Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
What kind of security feature could be bypassed by successfully exploiting this vulnerability? An attacker who successfully exploited this vulnerability could bypass Windows Defender Application Control and PowerShell Constrained Language Mode restrictions, allowing untrusted code to run with capabilities those protections are designed to block.
<a href="https://x.com/ayatoshitomi">Ayato Shitomi</a>, 陳宥升 (CheN..) https://github.com/samer666569, MinhNV5 with <a href="https://mbbank.com.vn/">MBBank</a>, <a href="https://www.ymsora.com/">YMsora</a>