Out-of-Bound Read in Autodesk AutoCAD 2023 Allows Potential Data Exposure
CVE-2023-27912

7.8HIGH

Key Information:

Vendor
Autodesk
Vendor
CVE Published:
14 April 2023

Summary

A vulnerability exists in Autodesk AutoCAD 2023 which allows a maliciously crafted X_B file to trigger an Out-of-Bound Read. Successful exploitation may enable an attacker to crash the application, execute arbitrary code, or access sensitive information within the affected process. Users of AutoCAD 2023 should be aware of this risk and take precautions to mitigate potential exposure.

Affected Version(s)

Autodesk AutoCAD 2023

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.