An attacker may convince a victim to open a malicious action micro (.actm) file that has serialized data, which may trigger a code execution in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD Architecture 2018, Autodesk AutoCAD Electrical 2018, Autodesk AutoCAD Map 3D 2018, Autodesk AutoCAD Mechanical 2018, Autodesk AutoCAD MEP 2018, Autodesk AutoCAD P&ID 2018, Autodesk AutoCAD Plant 3D 2018, Autodesk AutoCAD LT 2018, and Autodesk Civil 3D 2018.
References
Link | Resource |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2019-0001 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2019-04-09 20:30
Updated : 2024-02-04 20:20
NVD link : CVE-2019-7361
Mitre link : CVE-2019-7361
CVE.ORG link : CVE-2019-7361
JSON object : View
Products Affected
autodesk
- autocad_map_3d
- autocad_lt
- autocad_p\&id
- civil_3d
- autocad_electrical
- autocad
- autocad_mechanical
- advance_steel
- autocad_mep
- autocad_plant_3d
- autocad_architecture
CWE
CWE-502
Deserialization of Untrusted Data