Skip to main content

Autodesk AutoCAD Remote Code Execution Vulnerabilities

Last Update Date: 3 Mar 2014 12:22 Release Date: 3 Mar 2014 4039 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

Two vulnerabilities were identified in Autodesk AutoCAD. A remote user can cause arbitrary code to be executed on the target user's system.

  1. A remote user can trigger a FAS file search path flaw to cause arbitrary VBScript code to be executed on the target user's system.
  2. A remote user can trigger a DLL loading error to execute arbitrary code.

Impact

  • Remote Code Execution

System / Technologies affected

  • Autodesk AutoCAD version 2013 or prior

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (2014).

Vulnerability Identifier


Source


Related Link