CVE-2022-33884

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Description

Parsing a maliciously crafted X_B file can force Autodesk AutoCAD 2023 and 2022 to read beyond allocated boundaries. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-125

Vulnerable Software (10)

Type: Configuration

Vendor: autodesk

Product: autocad

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_advance_steel

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_architecture

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_civil_3d

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_electrical

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_lt

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_map_3d

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_mechanical

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_mep

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd

Type: Configuration

Vendor: autodesk

Product: autocad_plant_3d

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",      "versionEndExcluding": "2020.1.6",      "versionStartIncluding": "2020",      "vulnerable": true    },...

Source: nvd