PoC Index

CVE-2019-13208

HIGH 7.3EPSS 0.4%

WavesSysSvc in Waves MAXX Audio allows privilege escalation because the General registry key has Full Control access for the Users group, leading to DLL side loading. This affects WavesSysSvc64.exe 1.9.29.0.

CVSS v3.0
7.3 HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS v2.0
4.4 MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
EPSS
0.42% chance of exploitation in the next 30 days, 35th percentile
Published
2019-07-03
Updated
2024-08-04

Proof-of-concept exploits (1)

References

Related