Autodesk AutoCAD是美国Autodesk公司的一套专业的3D绘图软件。 Autodesk AutoCAD 中存在输入验证错误漏洞,该漏洞源于产品在JT文件进行解析中未对文件安全性进行完全检查。攻击者可通过该漏洞导致内存损坏触发超过所分配缓冲区末尾的写操作导致在当前进程上下文执行代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Autodesk Advanced Steel, Civil 3D, AutoCAD, AutoCAD LT, AutoCAD Architecture, AutoCAD Electrical, AutoCAD Map 3D, AutoCAD Mechanical, AutoCAD MEP, AutoCAD Plant 3D | 2022.1.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-25648 | 8.1 HIGH | Command Injection |
| CVE-2022-27527 | Autodesk Navisworks 缓冲区错误漏洞 | |
| CVE-2022-27104 | FormaLms SQL注入漏洞 | |
| CVE-2022-27055 | ecjia-daojia 安全漏洞 | |
| CVE-2021-44519 | Citrix XenMobile Server 路径遍历漏洞 | |
| CVE-2022-29315 | Invicti Acunetix 安全漏洞 | |
| CVE-2022-26595 | Liferay Portal和Liferay DXP 安全漏洞 | |
| CVE-2022-26593 | Liferay Portal和Liferay DXP 跨站脚本漏洞 | |
| CVE-2021-41570 | Veritas NetBackup 跨站脚本漏洞 | |
| CVE-2022-27927 | Microfinance Management System SQL注入漏洞 | |
| CVE-2021-43129 | Desire2Learn Learning Management System 安全漏洞 | |
| CVE-2022-28108 | Selenium Server 跨站请求伪造漏洞 | |
| CVE-2022-29153 | HashiCorp Consul 代码问题漏洞 |
No comments yet