VulnerabilityModified
CVE-2013-3665
Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file.
MEDIUM 6.8EPSS 2.67%
Does this matter?
Lower severity and a low EPSS score (2.67%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 2.67% probability · 85th percentile
- CISA KEV
- Not listed
- Affected
- autodesk/autocad · autodesk/autocad architecture · autodesk/autocad civil 3d · autodesk/autocad ecscad · autodesk/autocad electrical · autodesk/autocad lt · autodesk/autocad map 3d · autodesk/autocad mechanical · autodesk/autocad mep · autodesk/autocad p\&id · autodesk/autocad plant 3d · autodesk/autocad structural detailing · autodesk/autocad utility design · autodesk/dwg trueview
- Source
- cve@mitre.org
References
- http://images.autodesk.com/adsk/files/Autodesk_AutoCAD_Code_Execution_Vulnerability_Hotfix_Readme.pdfVendor Advisory
- http://usa.autodesk.com/adsk/servlet/ps/dl/item?id=21972896&linkID=9240618&siteID=123112Patch, Vendor Advisory
- http://images.autodesk.com/adsk/files/Autodesk_AutoCAD_Code_Execution_Vulnerability_Hotfix_Readme.pdfVendor Advisory
- http://usa.autodesk.com/adsk/servlet/ps/dl/item?id=21972896&linkID=9240618&siteID=123112Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.