8.6
CVE-2026-85217
- EPSS 0.13%
- Veröffentlicht 10.09.2026 13:29:58
- Zuletzt bearbeitet 11.09.2026 04:18:02
- Erkennungen
Man-in-the-Middle (MITM) Vulnerability in Autodesk Fusion Desktop
A maliciously crafted add-in, when installed and executed in Autodesk Fusion Desktop, can modify persistent network proxy settings without user notification or consent. A successful exploit may allow an attacker to redirect authenticated Fusion network traffic through an attacker-controlled proxy, potentially exposing sensitive information with the current user.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerAutodesk
≫
Produkt
Fusion
Default Statusunaffected
Version
2705.0.0
Version <
2705.1.11
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.13% | 0.026 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Autodesk | 8.6 | 1.8 | 6 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
|
CWE-15 External Control of System or Configuration Setting
One or more system settings or configuration elements can be externally controlled by a user.
https://www.autodesk.com/trust/security-advisories/adsk-sa-2026-0016
https://dl.appstreaming.autodesk.com/production/installers/Fusion%20Client%20Downloader.exe