Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fvwx-63p4-jv5q

Опубликовано: 12 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A maliciously crafted DLL file can be forced to read beyond allocated boundaries in Autodesk InfraWorks 2023, and 2021 when parsing the DLL files could lead to a resource injection vulnerability.

A maliciously crafted DLL file can be forced to read beyond allocated boundaries in Autodesk InfraWorks 2023, and 2021 when parsing the DLL files could lead to a resource injection vulnerability.

EPSS

Процентиль: 25%
0.00088
Низкий

7.8 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 7.8
nvd
больше 2 лет назад

A maliciously crafted DLL file can be forced to read beyond allocated boundaries in Autodesk InfraWorks 2023, and 2021 when parsing the DLL files could lead to a resource injection vulnerability.

EPSS

Процентиль: 25%
0.00088
Низкий

7.8 High

CVSS3

Дефекты

CWE-427