JMH
Emeritus, Contributor
- Apr 2, 2012
- 7,197
You can run any app on Windows machines by exploiting this security flaw | ZDNetThe Windows command line utility Regsvr32.exe can be exploited to bypass Microsoft Windows AppLocker protection systems, potentially leading to remote code execution.
The security flaw can be used to circumvent the app whitelist protections offered by AppLocker on business editions of Windows, versions 7 and beyond, by using the command line utility to point to a file or location controlled by an attacker.
As a result, files and scripts can be used to run an app on a Windows system.