ZDI-25-1115: Autodesk AutoCAD PRT File Parsing Memory Corruption Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Autodesk AutoCAD. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-9456.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-1115?
The severity of ZDI-25-1115 is classified as high due to its potential for remote code execution.
How do I fix ZDI-25-1115?
To fix ZDI-25-1115, you should update Autodesk AutoCAD to the latest version that addresses this vulnerability.
What kind of attack vector does ZDI-25-1115 utilize?
ZDI-25-1115 can be exploited when a user interacts with a malicious webpage or opens a compromised file.
Is user interaction required to exploit ZDI-25-1115?
Yes, user interaction is necessary for ZDI-25-1115 exploitation, as the target must visit a malicious page or open a malicious file.
What are the potential consequences of ZDI-25-1115?
The consequences of ZDI-25-1115 include the possibility of remote attackers executing arbitrary code on affected systems.