Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Juz P3Nt3$T

#39364de 53,640
7CVSS total
Vulnerabilidades · 1
PT-2017-16824
7.0
2017-07-26
Waves · Waves Maxxaudio · CVE-2017-6005
**Name of the Vulnerable Software and Affected Versions** Waves MaxxAudio version 1.1.6.0 **Description** The issue concerns a vulnerability known as Unquoted Service Path in the WavesSysSvc Windows service. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with elevated privileges on the system. **Recommendations** For Waves MaxxAudio version 1.1.6.0, consider updating the service to a version that quotes the service path to prevent exploitation. Alternatively, as a temporary workaround, consider restricting access to the WavesSysSvc service to minimize the risk of exploitation.