First published: Tue Jun 27 2023(Updated: )
A maliciously crafted SKP file in Autodesk Navisworks 2023 and 2022 be used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk Navisworks | =2022 | |
Autodesk Navisworks | =2023 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25001 is a vulnerability in Autodesk Navisworks 2023 and 2022 that can be triggered by a maliciously crafted SKP file, leading to a use-after-free vulnerability and potential code execution.
CVE-2023-25001 has a severity rating of 7.8, which is considered high.
CVE-2023-25001 affects Autodesk Navisworks 2023 and 2022.
CVE-2023-25001 can be exploited by using a maliciously crafted SKP file.
Exploitation of CVE-2023-25001 can result in code execution.