yup i agree - thats why by default its turned off. but otherwise pretty handy to have. would definitely by a security issue if your were running cmd.exe.