CVE-2024-8588
- EPSS 0.16%
- Veröffentlicht 29.10.2024 22:15:05
- Zuletzt bearbeitet 11.04.2025 17:15:39
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code...
CVE-2024-36999
- EPSS 0.61%
- Veröffentlicht 25.06.2024 04:15:15
- Zuletzt bearbeitet 13.11.2025 20:39:28
A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the c...
CVE-2024-23158
- EPSS 0.72%
- Veröffentlicht 25.06.2024 04:15:14
- Zuletzt bearbeitet 13.11.2025 20:32:49
A maliciously crafted IGES file, when parsed in ASMImport229A.dll through Autodesk applications, can be used to cause a use-after-free vulnerability. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the ...
CVE-2024-23155
- EPSS 0.2%
- Veröffentlicht 25.06.2024 04:15:13
- Zuletzt bearbeitet 06.05.2025 19:43:00
A maliciously crafted MODEL file, when parsed in atf_asm_interface.dll through Autodesk applications, can be used to cause a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in t...
CVE-2024-37002
- EPSS 0.2%
- Veröffentlicht 25.06.2024 03:15:10
- Zuletzt bearbeitet 13.11.2025 20:20:12
A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
CVE-2024-23138
- EPSS 0.24%
- Veröffentlicht 18.03.2024 00:15:07
- Zuletzt bearbeitet 26.08.2025 21:15:40
A maliciously crafted DWG file when parsed through Autodesk DWG TrueView can be used to cause a Stack-based Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of...
CVE-2024-23136
- EPSS 0.32%
- Veröffentlicht 22.02.2024 05:15:09
- Zuletzt bearbeitet 26.08.2025 21:15:40
A maliciously crafted STP file in ASMKERN228A.dll when parsed through Autodesk applications can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
CVE-2024-23135
- EPSS 0.69%
- Veröffentlicht 22.02.2024 05:15:09
- Zuletzt bearbeitet 26.08.2025 21:15:40
A maliciously crafted SLDPRT file in ASMkern228A.dll when parsed through Autodesk applications can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
CVE-2024-23134
- EPSS 0.35%
- Veröffentlicht 22.02.2024 05:15:09
- Zuletzt bearbeitet 26.08.2025 21:15:39
A maliciously crafted IGS file in tbb.dll when parsed through Autodesk AutoCAD can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
CVE-2024-23133
- EPSS 0.09%
- Veröffentlicht 22.02.2024 04:15:08
- Zuletzt bearbeitet 26.08.2025 21:15:39
A maliciously crafted STP file in ASMDATAX228A.dll when parsed through Autodesk applications can lead to a memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code exec...