ZeroHour

CVE-2023-41139

CVSS 3.1
7.8 high
EPSS
<1%p20
Published
()
Modified
Description

A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

Vendors
autodesk
Products
autocad, autocad advance steel, autocad architecture, autocad civil 3d, autocad electrical, autocad lt, autocad map 3d, autocad mechanical, autocad mep, autocad plant 3d
Weakness
CWE-822, CWE-119
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.