Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8gwm-5rh4-xg46

Опубликовано: 12 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated boundaries when parsing the DWF files. Exploitation of this vulnerability may lead to code execution.

A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated boundaries when parsing the DWF files. Exploitation of this vulnerability may lead to code execution.

EPSS

Процентиль: 61%
0.00418
Низкий

7.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
почти 4 года назад

A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated boundaries when parsing the DWF files. Exploitation of this vulnerability may lead to code execution.

EPSS

Процентиль: 61%
0.00418
Низкий

7.8 High

CVSS3

Дефекты

CWE-787