First published: Tue Dec 17 2024(Updated: )
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk Navisworks |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12178 is classified as a critical severity vulnerability due to its potential for arbitrary code execution.
To fix CVE-2024-12178, ensure that you update Autodesk Navisworks to the latest version provided by Autodesk.
CVE-2024-12178 is exploited through maliciously crafted DWFX files.
An attacker can execute arbitrary code in the context of the current process by exploiting CVE-2024-12178.
CVE-2024-12178 affects Autodesk Navisworks.