Untrusted Pointer Dereference Vulnerability in Autodesk Products
CVE-2026-7406

7.8HIGH

Key Information:

Vendor

Autodesk

Vendor
CVE Published:
6 August 2026

What is CVE-2026-7406?

A vulnerability exists within certain Autodesk products that exposes systems to untrusted pointer dereference risks when processing maliciously crafted BMP files. Exploiting this vulnerability allows attackers to execute arbitrary code within the context of the affected process, potentially bypassing security mechanisms and compromising system integrity.

Affected Version(s)

AutoCAD 2027.0.0 < 2027.1.0

AutoCAD 2026.0.0 < 2026.1.2

AutoCAD LT 2027.0.0 < 2027.1.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.