A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to execution of arbitrary code in the context of the current process due to an untrusted search path being utilized.
Metrics
Affected Vendors & Products
References
History
Tue, 19 Aug 2025 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Autodesk advance Steel
Autodesk autocad Autodesk autocad Architecture Autodesk autocad Electrical Autodesk autocad Lt Autodesk autocad Map 3d Autodesk autocad Mechanical Autodesk autocad Mep Autodesk autocad Plant 3d Autodesk civil 3d Autodesk realdwg |
|
CPEs | cpe:2.3:a:autodesk:advance_steel:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_architecture:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_electrical:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_lt:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_map_3d:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_mechanical:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_mep:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_plant_3d:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:civil_3d:2026:*:*:*:*:*:*:* cpe:2.3:a:autodesk:realdwg:2026:*:*:*:*:*:*:* |
|
Vendors & Products |
Autodesk advance Steel
Autodesk autocad Autodesk autocad Architecture Autodesk autocad Electrical Autodesk autocad Lt Autodesk autocad Map 3d Autodesk autocad Mechanical Autodesk autocad Mep Autodesk autocad Plant 3d Autodesk civil 3d Autodesk realdwg |
|
References |
|
Wed, 30 Jul 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Autodesk
Autodesk infrastructure Parts Editor Autodesk inventor Autodesk navisworks Manage Autodesk navisworks Simulate Autodesk revit Autodesk vault |
|
CPEs | cpe:2.3:a:autodesk:infrastructure_parts_editor:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:inventor:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:navisworks_manage:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:navisworks_simulate:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:revit:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:vault:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Autodesk
Autodesk infrastructure Parts Editor Autodesk inventor Autodesk navisworks Manage Autodesk navisworks Simulate Autodesk revit Autodesk vault |
Thu, 24 Jul 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 24 Jul 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to execution of arbitrary code in the context of the current process due to an untrusted search path being utilized. | |
Title | Privilege Ecalation due to Untrusted Search Path Vulnerability | |
Weaknesses | CWE-426 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: autodesk
Published: 2025-07-24T17:11:14.714Z
Updated: 2025-08-19T13:17:42.116Z
Reserved: 2025-05-21T13:00:59.147Z
Link: CVE-2025-5039

Updated: 2025-07-24T19:22:17.578Z

Status : Modified
Published: 2025-07-24T17:15:32.817
Modified: 2025-08-19T14:15:40.773
Link: CVE-2025-5039

No data.