Improper neutralization of special elements used in a command ('command injection') in Windows PowerShell allows an unauthorized attacker to execute code locally.

Published: 2025-12-09

CVSS: 7.8

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Download CVE-2025-54100 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://connollyfinan.ie/poc-626-cve-2022-1292/

https://connollyfinan.ie/poc-173-cve-2021-3560/

https://connollyfinan.ie/poc-120-cve-2019-0211/

https://connollyfinan.ie/poc-267-cve-2022-22719/