Jul 11, 2008

Microsoft Security Advisory (953635)

Common Name: Microsoft Word XP/2002 SP3 Exploit  
Date Disclosed: 7/8/2008
Application: Microsoft Word XP/2002 SP3  

Description:
An unspecified vulnerability exists within Microsoft Word XP / 2002 which may possibly allow for a remote attacker to execute arbitrary code under the context of the logged in user. This vulnerability requires user interaction. In a web-based scenario (e-mail, Web site), a user would still have to open a file manually, as it would not be auto-opened. From 

http://research.eeye.com/html/alerts/zeroday/20080708.html