Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25002


A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.


Published

2023-06-27T23:15:09.590

Last Modified

2024-11-21T07:48:54.660

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-416

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application autodesk 3ds_max 2022 Yes
Application autodesk 3ds_max 2023 Yes
Application autodesk navisworks 2022 Yes
Application autodesk navisworks 2023 Yes
Application autodesk revit 2022 Yes
Application autodesk revit 2023 Yes
Application autodesk vred 2023 Yes

References