CVE-2021-40155 Vulnerability Details
/
/
/
CVE-2021-40155 Metadata Quick Info
CVE Published: 15/09/2021 |
CVE Updated: 04/08/2024 |
CVE Year: 2021
Source: autodesk |
Vendor: n/a |
Product: Autodesk Navisworks
Status : PUBLISHED
CVE-2021-40155 Description
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID:
CWE Name: Out-of-bound Read
Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).