EDB-ID: 50708 CVE: N/A Author: Ismael Nava Type: LOCAL Platform: WINDOWS Date: 2022-02-04 Vulnerability Summary: - Title: FLAME II MODEM USB - Unquoted Service Path - Discovery by: Ismael Nava - Discovery Date: 02-02-2022 - Vendor Homepage: https://www.telcel.com/personas/equipos/modems-usb/alcatel/x602a - Software Links: N/A (Is a BAM) - Tested Version: N/A - Vulnerability Type: Unquoted Service Path - Tested on OS: Windows 10 64 BITS Vulnerability Details: - wmic service get name, displayname, pathname, startmode - Service Name: FLAME II HSPA USB MODEM Service - Display Name: FLAME II HSPA USB MODEM Service - Path Name: C:\Program Files (x86)\Internet Telcel\ApplicationController.exe - Start Mode: Auto NOMBRE_INICIO_SERVICIO:** LocalSystem