
Published: 10/04/2024 Updated: 10/04/2024

Vulnerability Summary

A command inject vulnerability allows an malicious user to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.

Vulnerability Trend

Github Repositories

investigating the BatBadBut vulnerability,

outcome of the here implemented batbadbut_incsharpexe > batbadbut_incsharpexe Hello! I am going to run following command Guess what will happen ;-) cmd /C echo "\"&calcexe" See? The calcexe was started on your computer Bye! Press any key to stop this console program "\" BatBadBut vulnar