CVE-2019-7361

Severity
7.8HIGH
EPSS
0.4%
top 41.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 9
Latest updateMay 14

Description

An attacker may convince a victim to open a malicious action micro (.actm) file that has serialized data, which may trigger a code execution in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD Architecture 2018, Autodesk AutoCAD Electrical 2018, Autodesk AutoCAD Map 3D 2018, Autodesk AutoCAD Mechanical 2018, Autodesk AutoCAD MEP 2018, Autodesk AutoCAD P&ID 2018, Autodesk AutoCAD Plant 3D 2018, Autodesk AutoCAD LT 2018, and Autodesk Civil 3D 2018.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages22 packages

🔴Vulnerability Details

2
GHSA
GHSA-j38r-8r52-4fm2: An attacker may convince a victim to open a malicious action micro (2022-05-14
CVEList
CVE-2019-7361: An attacker may convince a victim to open a malicious action micro (2019-04-09
CVE-2019-7361 (HIGH CVSS 7.8) | An attacker may convince a victim t | cvebase.io