CVE-2024-37002
—CVSS 3.1
7.8 high
EPSS
<1%p32
Published
()
Modified
Description
A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
- Vendors
- autodesk
- Products
- autocad, autocad architecture, autocad electrical, autocad map 3d, autocad mechanical, autocad mep, autocad plant 3d, civil 3d, advance steel
- Weakness
- CWE-457, CWE-908
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.