Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jxv7-pgr4-p3g5

Опубликовано: 26 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A Memory Corruption Vulnerability in Autodesk Design Review 2018, 2017, 2013, 2012, 2011 and prior may lead to remote code execution through maliciously crafted DWF and TGA files.

A Memory Corruption Vulnerability in Autodesk Design Review 2018, 2017, 2013, 2012, 2011 and prior may lead to remote code execution through maliciously crafted DWF and TGA files.

EPSS

Процентиль: 61%
0.00418
Низкий

7.8 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 7.8
nvd
около 4 лет назад

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

EPSS

Процентиль: 61%
0.00418
Низкий

7.8 High

CVSS3

Дефекты

CWE-119