CVE-2019-7361
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An attacker may convince a victim to open a malicious action micro (.actm) file that has serialized data, which may trigger a code execution in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD Architecture 2018, Autodesk AutoCAD Electrical 2018, Autodesk AutoCAD Map 3D 2018, Autodesk AutoCAD Mechanical 2018, Autodesk AutoCAD MEP 2018, Autodesk AutoCAD P&ID 2018, Autodesk AutoCAD Plant 3D 2018, Autodesk AutoCAD LT 2018, and Autodesk Civil 3D 2018.
Un atacante puede convencer a una víctima para abrir un archivo micro de acción maliciosa (.actm) que tiene datos serializados, lo que puede desencadenar una ejecución de código en Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD Architecture 2018, Autodesk AutoCAD Electrical 2018, Autodesk AutoCAD Map 3D 2018, Autodesk AutoCAD Mechanical 2018, Autodesk AutoCAD MEP 2018, Autodesk AutoCAD P & ID 2018, Autodesk AutoCAD Plant 3D 2018, Autodesk AutoCAD LT 2018 y Autodesk Civil 3D 2018.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-02-04 CVE Reserved
- 2019-04-09 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-502: Deserialization of Untrusted Data
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2019-0001 | 2019-04-11 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Autodesk Search vendor "Autodesk" | Advance Steel Search vendor "Autodesk" for product "Advance Steel" | 2018 Search vendor "Autodesk" for product "Advance Steel" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Search vendor "Autodesk" for product "Autocad" | 2018 Search vendor "Autodesk" for product "Autocad" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Architecture Search vendor "Autodesk" for product "Autocad Architecture" | 2018 Search vendor "Autodesk" for product "Autocad Architecture" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Electrical Search vendor "Autodesk" for product "Autocad Electrical" | 2018 Search vendor "Autodesk" for product "Autocad Electrical" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Lt Search vendor "Autodesk" for product "Autocad Lt" | 2018 Search vendor "Autodesk" for product "Autocad Lt" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Map 3d Search vendor "Autodesk" for product "Autocad Map 3d" | 2018 Search vendor "Autodesk" for product "Autocad Map 3d" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Mechanical Search vendor "Autodesk" for product "Autocad Mechanical" | 2018 Search vendor "Autodesk" for product "Autocad Mechanical" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Mep Search vendor "Autodesk" for product "Autocad Mep" | 2018 Search vendor "Autodesk" for product "Autocad Mep" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad P\&id Search vendor "Autodesk" for product "Autocad P\&id" | 2018 Search vendor "Autodesk" for product "Autocad P\&id" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Autocad Plant 3d Search vendor "Autodesk" for product "Autocad Plant 3d" | 2018 Search vendor "Autodesk" for product "Autocad Plant 3d" and version "2018" | - |
Affected
| ||||||
Autodesk Search vendor "Autodesk" | Civil 3d Search vendor "Autodesk" for product "Civil 3d" | 2018 Search vendor "Autodesk" for product "Civil 3d" and version "2018" | - |
Affected
|