ZeroHour

CVE-2025-5039

CVSS 3.1
7.8 high
EPSS
<1%p7
Published
()
Modified
Description

A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to execution of arbitrary code in the context of the current process due to an untrusted search path being utilized.

Vendors
autodesk
Products
infrastructure parts editor, inventor, navisworks manage, navisworks simulate, revit, vault
Weakness
CWE-426
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.