FUD
Doug hit it right on the head. This does not even exploit a vulnerability, any macro-enabled system can be abused, but unless you've lowered your security level for macros, you have to tell OOo to let it run. I myself always put OOo's macro security to "high," to stop the other idiot users from doing something exactly like this.