Improper neutralization of special elements used in a command ('command injection') in Microsoft Azure CLI allows an authorized attacker to execute code over a network.
According to the CVSS metric, the attack complexity is high (AC:H). What does this mean for this vulnerability? An attacker would need specific conditions to be in place (i.e. particular protocol settings, or configurations, etc.) before an attack could succeed, which reduces the likelihood of widespread or opportunistic exploitation. How could an attacker exploit this vulnerability? An authenticated attacker with permission to modify tags on an Azure virtual machine could add a specially crafted tag. If an administrator later uses the affected Azure CLI repair command to copy tags from that virtual machine on Windows, the tag could be interpreted as a command and execute code with the administrator's permissions.
pwn2addr