Autodesk Revit Vulnerability Allowes Malicious Action
CVE-2024-7993
7.8HIGH
Summary
A vulnerability exists in Autodesk Revit that allows a specially crafted PDF file to trigger an Out-of-Bounds Write when processed by the application. This issue can enable an attacker to crash the application, extract sensitive information, or execute arbitrary code within the context of the current user process. System administrators and users of affected versions of Autodesk Revit should apply any available updates and follow security best practices to mitigate risk. For more detailed information and guidance, visit the official Autodesk security advisory.
Affected Version(s)
Revit 2025 < 2025.3
Revit 2024 < 2024.2.2
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published