Arbitrary Code Execution in Autodesk Maya by Remote Attackers
CVE-2009-3578

Currently unrated

Key Information:

Vendor

Autodesk

Vendor
CVE Published:
24 November 2009

What is CVE-2009-3578?

Autodesk Maya versions 8.0 through 2010 and Alias Wavefront Maya 6.5 and 7.0 are susceptible to vulnerabilities that enable remote attackers to execute arbitrary code. This can occur through specially crafted .ma or .mb files that exploit the Maya Embedded Language (MEL) commands. Attackers can manipulate Script Nodes, leading to the execution of potentially harmful commands, thereby compromising the integrity and security of the affected systems.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2009-3578 : Arbitrary Code Execution in Autodesk Maya by Remote Attackers