First published: Fri May 28 2021(Updated: )
Autodesk Licensing Installer was found to be vulnerable to privilege escalation issues. A malicious user with limited privileges could run any number of tools on a system to identify services that are configured with weak permissions and are running under elevated privileges. These weak permissions could allow all users on the operating system to modify the service configuration and take ownership of the service.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk Licensing Services | =9.0.1.1462.100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27032 is classified as a privilege escalation vulnerability that allows a malicious user to exploit weak permissions.
To fix CVE-2021-27032, you should update Autodesk Licensing Services to the latest version that addresses this vulnerability.
Any user running Autodesk Licensing Services version 9.0.1.1462.100 may be affected by CVE-2021-27032.
An attacker exploiting CVE-2021-27032 can run tools to identify and exploit services with weak permissions on a system.
Yes, a patch is available to mitigate the vulnerabilities associated with CVE-2021-27032, which can be obtained by updating the affected software.