CVE-2021-40159Sensitive Information Exposure in Advance Steel

Severity
7.8HIGHNVD
EPSS
0.3%
top 43.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 25
Latest updateFeb 11

Description

An Information Disclosure vulnerability for JT files in Autodesk Inventor 2022, 2021, 2020, 2019 in conjunction with other vulnerabilities may lead to code execution through maliciously crafted JT files in the context of the current process.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages12 packages

CVEListV5autodesk/inventor2022, 2021, 2020, 2019
NVDautodesk/inventor4 versions+3
NVDautodesk/autocad20222022.1.2
NVDautodesk/civil_3d20222022.1.2
NVDautodesk/autocad_lt20222022.1.2

🔴Vulnerability Details

2
GHSA
GHSA-67q4-7j7w-j6hx: An Information Disclosure vulnerability for JT files in Autodesk Inventor 2022, 2021, 2020, 2019 may lead to code execution through maliciously crafte2022-02-11
CVEList
CVE-2021-40159: An Information Disclosure vulnerability for JT files in Autodesk Inventor 2022, 2021, 2020, 2019 in conjunction with other vulnerabilities may lead to2022-01-25
CVE-2021-40159 — Sensitive Information Exposure | cvebase