cbcvebase.
CVE-2024-7995
published 2024-11-05

CVE-2024-7995: A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the VRED Design application. Exploitation of this vulnerability may lead to code execution.

Affected

2 ranges
VendorProductVersion rangeFixed in
autodeskvred>= 2025 < 2025.22025.2
autodeskvred_design>= 2025 < 2025.22025.2