7.8
CVE-2021-27028
- EPSS 0.73%
- Veröffentlicht 19.04.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:12
- Quelle psirt@autodesk.com
- CVE-Watchlists
- Unerledigt
A Memory Corruption Vulnerability in Autodesk FBX Review version 1.5.0 and prior may lead to remote code execution through maliciously crafted DLL files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Autodesk ≫ Fbx Review Version <= 1.5.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.73% | 0.703 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.