Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-11454


A maliciously crafted DLL file, when placed in the same directory as an RVT file could be loaded by Autodesk Revit, and execute arbitrary code in the context of the current process due to an untrusted search patch being utilized.


Published

2024-12-09T18:15:22.400

Last Modified

2025-09-26T17:48:10.207

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-426
  • Type: Primary
    CWE-426

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application autodesk revit < 2025.4 Yes

References