A vulnerability was found in Grandstream Wave up to 1.27.8 on Windows. It has been declared as problematic. This affects an unknown part of the file wave.exe. The manipulation results in uncontrolled search path.
This vulnerability is known as CVE-2025-40979. Attacking locally is a requirement. No exploit is available.
It is recommended to upgrade the affected component.