CVE-2023-41139
🟡 Monitoruj
Złośliwie skonstruowany plik STP w AutoCAD 2024 i 2023 może prowadzić do wykonania kodu.
CVSS
7.8
EPSS
0.3%
Exploit
none
Vendor
autodesk
Opis źródłowy (NVD)
A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.8 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.3% |
| Opublikowano (NVD) | 2023-11-23 04:15:07 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-08 22:17:24 UTC |
Referencje