Relative path traversal in Microsoft PowerShell Core allows an unauthorized attacker to execute code over a network.
How could an attacker exploit this vulnerability? An attacker could host a malicious server and convince a user to connect to it from an affected client. When the client processes the server's response, the attacker could execute code on the client system. User interaction is required.
<a href="https://x.com/hasanfleyah">Hasan Flayyih Abdullah</a>, <a href="https://x.com/0x7m_d">0hmz</a>, f7d8c52bec79e42795cf15888b85cbad, xboy, <a href="https://x.com/theteatoast">Anindya Roy</a>, <a href="https://www.linkedin.com/in/mohit-negi-b9b5711a2y">Mohit_Negi</a> with <a href="https://bugcrowd.com/mohit_negi">Bugcrowd</a>, xboy, <a href="https://www.linkedin.com/in/mohit-negi-b9b5711a2y">Mohit_Negi</a> with <a href="https://bugcrowd.com/mohit_negi">Bugcrowd</a>