CVE-2017-6005: Waves Maxxaudio

High severity, CVSS 7.0. EPSS: 0.3% chance of exploitation in the next 30 days.

Waves MaxxAudio, as installed on Dell laptops, adds a "WavesSysSvc" Windows service with File Version 1.1.6.0. This service has a vulnerability known as Unquoted Service Path. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with elevated privileges on the system.

Affected products

  • Waves Maxxaudio: version 1.1.6.0 only

Published 2017-07-26. Last modified 2026-06-17.