7.8
CWE
787
Advisory Published
Updated

CVE-2022-33883

First published: Mon Oct 03 2022(Updated: )

A malicious crafted file consumed through Moldflow Synergy, Moldflow Adviser, Moldflow Communicator, and Advanced Material Exchange applications could lead to memory corruption vulnerability. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

Credit: psirt@autodesk.com

Affected SoftwareAffected VersionHow to fix
Autodesk Advanced Material Exchange=2019
Autodesk Advanced Material Exchange=2021
Autodesk Moldflow Adviser=2019
Autodesk Moldflow Adviser=2021
Autodesk Moldflow Communicator=2019
Autodesk Moldflow Communicator=2021
Autodesk Moldflow Synergy=2019
Autodesk Moldflow Synergy=2021

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2022-33883?

    CVE-2022-33883 is considered a high severity vulnerability due to the potential for code execution from memory corruption.

  • How do I fix CVE-2022-33883?

    To fix CVE-2022-33883, users should update their Autodesk Moldflow and Advanced Material Exchange applications to the latest patched versions.

  • Which versions of Autodesk software are affected by CVE-2022-33883?

    CVE-2022-33883 affects Autodesk Moldflow Adviser, Moldflow Communicator, Moldflow Synergy, and Advanced Material Exchange versions 2019 and 2021.

  • What types of attacks can exploit CVE-2022-33883?

    CVE-2022-33883 can be exploited by using a maliciously crafted file that leads to memory corruption, potentially allowing for arbitrary code execution.

  • Is CVE-2022-33883 a local or remote vulnerability?

    CVE-2022-33883 can be exploited locally, as it requires opening a compromised file within the affected Autodesk applications.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203