WellChoose BatchSignCS Arbitrary File Write Vulnerability Allowing Code Execution

Vulnerability

A vulnerability allowing arbitrary file write has been identified in BatchSignCS, a Windows background application developed by WellChoose. This issue affects versions through 3.138. When a user visits a malicious website while the application is running, remote attackers can write files to any location on the user's system. This vulnerability could potentially be exploited to execute arbitrary code.

Impact

Exploitation of this vulnerability could lead to unauthorized file writes, with the potential for executing arbitrary code on the affected system.

Remediation

Users are advised to update BatchSignCS to version 3.145 or later.

Added: Jul 14, 2025, 4:17 AM
Updated: Jul 14, 2025, 4:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
6.4
remediation
7.7
relevance
0.2
threat
0.1
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.