7.8

CVE-2022-33881

Parsing a maliciously crafted PRT file can force Autodesk AutoCAD 2023 to read beyond allocated boundaries. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Autodesk ≫ Autocad Version 2023
Autodesk ≫ Autocad Advance Steel Version 2023
Autodesk ≫ Autocad Architecture Version 2023
Autodesk ≫ Autocad Civil 3d Version 2023
Autodesk ≫ Autocad Electrical Version 2023
Autodesk ≫ Autocad Lt Version 2023
Autodesk ≫ Autocad Map 3d Version 2023
Autodesk ≫ Autocad Mechanical Version 2023
Autodesk ≫ Autocad Mep Version 2023
Autodesk ≫ Autocad Plant 3d Version 2023
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.4% 0.322
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0014
Vendor Advisory