CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the VRED Design application. Exploitation of this vulnerab...Show more |
1Autodesk 43ds Max NavisworksRevit+1 moreJun 17, 2026 Jun 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution. |
1Autodesk 17Alias AutocadAutocad Advance Steel+14 moreJun 17, 2026 Jun 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context o...Show more |
1Autodesk 17Alias AutocadAutocad Advance Steel+14 moreJun 17, 2026 Jun 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution. |
1Autodesk 17Alias AutocadAutocad Advance Steel+14 moreJun 17, 2026 Jun 23, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution. |
Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library calls in Python API commands to the integrated web server. |