A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds
- https://github.com/michalsvoboda76/batbadbut