7.8
CVE-2025-1276
- EPSS 0.02%
- Veröffentlicht 15.04.2025 20:55:04
- Zuletzt bearbeitet 19.08.2025 13:15:39
- Quelle psirt@autodesk.com
- CVE-Watchlists
- Unerledigt
A maliciously crafted DWG file, when parsed through certain Autodesk applications, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Autodesk ≫ Advance Steel Version >= 2023 < 2023.1.7
Autodesk ≫ Advance Steel Version >= 2024 < 2024.1.7
Autodesk ≫ Advance Steel Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Architecture Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Architecture Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Architecture Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Electrical Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Electrical Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Electrical Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Lt SwPlatform- Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Lt SwPlatform- Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Lt SwPlatform- Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Map 3d Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Map 3d Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Map 3d Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Mechanical Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Mechanical Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Mechanical Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Mep Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Mep Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Mep Version >= 2025 < 2025.1.2
Autodesk ≫ Autocad Plant 3d Version >= 2023 < 2023.1.7
Autodesk ≫ Autocad Plant 3d Version >= 2024 < 2024.1.7
Autodesk ≫ Autocad Plant 3d Version >= 2025 < 2025.1.2
Autodesk ≫ Dwg Trueview Version >= 2023 < 2023.1.7
Autodesk ≫ Dwg Trueview Version >= 2024 < 2024.1.7
Autodesk ≫ Dwg Trueview Version >= 2025 < 2025.1.2
Autodesk ≫ Infrastructure Parts Editor Version >= 2024 < 2024.1.7
Autodesk ≫ Infrastructure Parts Editor Version >= 2025 < 2025.1.2
Autodesk ≫ Navisworks Manage Version >= 2024 < 2024.1.7
Autodesk ≫ Navisworks Manage Version >= 2025 < 2025.1.2
Autodesk ≫ Navisworks Simulate Version >= 2024 < 2024.1.7
Autodesk ≫ Navisworks Simulate Version >= 2025 < 2025.1.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.027 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@autodesk.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.