Arbitrary Code Execution
An arbitrary code execution vulnerability was found in the WithSecure Support Tool. A standard user can craft a special configuration file, which when run by administrator can execute any commands.
This issue was reported to WithSecure through the Vulnerability Reward Program. No known exploit or attack has been seen in the wild.
WithSecure Corporation would like to thank following person for bringing this issue to our attention.