CVE-2024-7995
- EPSS 0.07%
- Veröffentlicht 05.11.2024 20:15:15
- Zuletzt bearbeitet 18.08.2025 21:15:29
A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the VRED Design application. Exploitation of this vulnerability may lead to code executi...
CVE-2023-25002
- EPSS 0.19%
- Veröffentlicht 27.06.2023 23:15:09
- Zuletzt bearbeitet 21.11.2024 07:48:54
A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.
CVE-2023-25004
- EPSS 0.08%
- Veröffentlicht 27.06.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:48:54
A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution.
CVE-2023-29068
- EPSS 0.06%
- Veröffentlicht 27.06.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:56:29
A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
CVE-2023-25003
- EPSS 0.05%
- Veröffentlicht 23.06.2023 19:15:08
- Zuletzt bearbeitet 21.11.2024 07:48:54
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution.
- EPSS 4.36%
- Veröffentlicht 07.07.2014 11:01:29
- Zuletzt bearbeitet 12.04.2025 10:46:40
Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library calls in Python API commands to the integrated web server.