PT-2026-2411 · Unknown+1 · Flame Ii Hspa Usb Modem+1

Ismael Nava

·

Published

2026-01-13

·

Updated

2026-01-14

·

CVE-2022-50935

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Flame II HSPA USB Modem (affected versions not specified)
Description The Flame II HSPA USB Modem contains a flaw due to an unquoted service path in its Windows service configuration. This allows attackers to potentially execute arbitrary code with elevated system privileges by exploiting the unquoted path located at 'C:Program Files (x86)Internet TelcelApplicationController.exe'. The ApplicationController.exe executable is vulnerable.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2022-50935

Affected Products

Applicationcontroller.Exe
Flame Ii Hspa Usb Modem