Microsoft Excel Starter XXE Remote File Disclosure
Microsoft Excel Starter OLD versions specifically '.xls' and '.xlthtml' files are vulnerable to XML External Entity attack. This can allow remote attackers to access and disclose ANY files from a victims computer if they open a corrupt '.xls' Excel file. We can also abuse XXE to make connections to the victims system/LAN and bypass Firewall,IPS etc (XXE/SSRF). When open the victim will get a warn message about it being a 'different format and from trusted source'. If user choose open the file they get error message 'File cannot be opened because: System does not support the specified encoding.' Then files you target get accessed and transfered to remote server. IF Excec.exe is running on the victims system, the malicious file will execute and you can get a reverse shell.