CVE-2023-27915

HIGH

Autodesk Autocad < 2023.1.3 - Out-of-Bounds Write

Title source: rule
STIX 2.1

Description

A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0013
EPSS Percentile 32.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-125 CWE-787
Status published
Products (10)
autodesk/autocad 2023 - 2023.1.3
autodesk/autocad_advance_steel 2023 - 2023.1.3
autodesk/autocad_architecture 2023 - 2023.1.3
autodesk/autocad_civil_3d 2023 - 2023.1.3
autodesk/autocad_electrical 2023 - 2023.1.3
autodesk/autocad_lt 2023 - 2023.1.3
autodesk/autocad_map_3d 2023 - 2023.1.3
autodesk/autocad_mechanical 2023 - 2023.1.3
autodesk/autocad_mep 2023 - 2023.1.3
autodesk/autocad_plant_3d 2023 - 2023.1.3
Published Apr 14, 2023
Tracked Since Feb 18, 2026