Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xqxh-7x7w-p8r9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.

A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.

EPSS

Процентиль: 61%
0.00418
Низкий

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.

EPSS

Процентиль: 61%
0.00418
Низкий

Дефекты

CWE-125