CVE-2023-29069
HIGHAutodesk Desktop Connector <= 16.2.1.2016 - Privilege Escalation
Title source: llmDescription
A maliciously crafted DLL file can be forced to install onto a non-default location, and attacker can overwrite parts of the product with malicious DLLs. These files may then have elevated privileges leading to a Privilege Escalation vulnerability.
Scores
CVSS v3
7.8
EPSS
0.0080
EPSS Percentile
73.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-427
Status
published
Affected Products (1)
autodesk/desktop_connector
< 16.2.1.2016
Timeline
Published
Nov 22, 2023
Tracked Since
Feb 18, 2026