Microsoft Security Advisory MS02-059 - A flaw in Microsoft Word and Excel's external updates can lead to information disclosure. A vulnerability exists because it is possible to maliciously use field codes and external updates to steal information from a user without the user being aware. Certain events can trigger field code and external update to be updated, such as saving a document or by the user manually updating the links. A specially crafted field code or external update can be used to trigger an update without any indication to the user, allowing attackers to create documents that, when opened, would update themselves to include the contents of a file from the user's local computer.
3c394c60eefd40045fbec1e9b03a88f1507434bed7c4a0b450028ad3a778056e