PT-2026-2405 · Connectify · Connectify Hotspot 2018

Samalucard

·

Publicado

2026-01-13

·

Atualizado

2026-01-14

·

CVE-2022-50929

CVSS v3.1

8.4

Alta

VetorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Connectify Hotspot 2018
Description Connectify Hotspot 2018 contains a flaw due to an unquoted service path in the ConnectifyService executable. This allows local attackers to potentially execute arbitrary code. The issue stems from the unquoted path 'C:Program Files (x86)ConnectifyConnectifyService.exe', which can be exploited to inject malicious executables and escalate privileges.
Recommendations Apply updated security measures to properly quote the service path for the ConnectifyService executable.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2022-50929

Produtos afetados

Connectify Hotspot 2018