cbcvebase.
CVE-2022-27864
published 2022-07-29

CVE-2022-27864: A Double Free vulnerability allows remote attackers to execute arbitrary code through DesignReview.exe application on PDF files within affected installations…

PriorityP344high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.95%
57.2th percentile
A Double Free vulnerability allows remote attackers to execute arbitrary code through DesignReview.exe application on PDF files within affected installations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.

Affected

5 ranges
VendorProductVersion rangeFixed in
autodeskdesign_review
autodeskdesign_review
autodeskdesign_review
autodeskdesign_review
autodeskdesign_review
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.