CVE-2023-53965
SOUND4 Server Service 4.1.102 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted binary path by inserting malicious code in the system root path that could execute with LocalSystem privileges during service startup.
Published:Dec 22, 2025
Last Modified:Jan 29, 2026
EPS:Dec 22, 2025
EPSS Score:0.00019
CVSS Score:8.4
Affected Products
Vendor
Product
Action
Vendor
Sound4
Product
Big Voice
Sound4
Big Voice
Vendor
Sound4
Product
Big Voice Firmware
Sound4
Big Voice Firmware
Vendor
Sound4
Product
First
Sound4
First
Vendor
Sound4
Product
First Firmware
Sound4
First Firmware
Vendor
Sound4
Product
Impact
Sound4
Impact
Vendor
Sound4
Product
Impact Eco
Sound4
Impact Eco
Vendor
Sound4
Product
Impact Eco Firmware
Sound4
Impact Eco Firmware
Vendor
Sound4
Product
Impact Firmware
Sound4
Impact Firmware
Vendor
Sound4
Product
Ip Connect
Sound4
Ip Connect
Vendor
Sound4
Product
Ip Connect Firmware
Sound4
Ip Connect Firmware
Vendor
Sound4
Product
Playout Ula8
Sound4
Playout Ula8
Vendor
Sound4
Product
Playout Ula8 Firmware
Sound4
Playout Ula8 Firmware
Vendor
Sound4
Product
Pulse
Sound4
Pulse
Vendor
Sound4
Product
Pulse Eco
Sound4
Pulse Eco
Vendor
Sound4
Product
Pulse Eco Firmware
Sound4
Pulse Eco Firmware
Vendor
Sound4
Product
Pulse Firmware
Sound4
Pulse Firmware
Vendor
Sound4
Product
Server Service
Sound4
Server Service
Vendor
Sound4
Product
Stream X2
Sound4
Stream X2
Vendor
Sound4
Product
Stream X2 Firmware
Sound4
Stream X2 Firmware
Vendor
Sound4
Product
Stream X4
Sound4
Stream X4
Vendor
Sound4
Product
Stream X4 Firmware
Sound4
Stream X4 Firmware
Vendor
Sound4
Product
Stream X8
Sound4
Stream X8
Vendor
Sound4
Product
Stream X8 Firmware
Sound4
Stream X8 Firmware
Vendor
Sound4
Product
Voice Ula2
Sound4
Voice Ula2
Vendor
Sound4
Product
Voice Ula2 Firmware
Sound4
Voice Ula2 Firmware
Vendor
Sound4
Product
Voice Ula4
Sound4
Voice Ula4
Vendor
Sound4
Product
Voice Ula4 Firmware
Sound4
Voice Ula4 Firmware
Vendor
Sound4
Product
Voice Ula8
Sound4
Voice Ula8
Vendor
Sound4
Product
Voice Ula8 Firmware
Sound4
Voice Ula8 Firmware
Vendor
Sound4
Product
Wm2
Sound4
Wm2
Vendor
Sound4
Product
Wm2 Firmware
Sound4
Wm2 Firmware
Exploits
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
