CVE-2022-33883

HIGH

Moldflow <version> - Memory Corruption

Title source: llm
STIX 2.1

Description

A malicious crafted file consumed through Moldflow Synergy, Moldflow Adviser, Moldflow Communicator, and Advanced Material Exchange applications could lead to memory corruption vulnerability. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0006
EPSS Percentile 18.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (8)
autodesk/advanced_material_exchange 2019
autodesk/advanced_material_exchange 2021
autodesk/moldflow_adviser 2019
autodesk/moldflow_adviser 2021
autodesk/moldflow_communicator 2019
autodesk/moldflow_communicator 2021
autodesk/moldflow_synergy 2019
autodesk/moldflow_synergy 2021
Published Oct 03, 2022
Tracked Since Feb 18, 2026