CVE-2022-25788

A maliciously crafted JT file in Autodesk AutoCAD 2022 may be used to write beyond the allocated buffer while parsing JT files. This vulnerability can be exploited to execute arbitrary code.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
autodeskCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 60%
VendorProductVersion
autodeskadvance_steel
2022 ≤
𝑥
< 2022.1.2
autodeskautocad
2022 ≤
𝑥
< 2022.1.2
autodeskautocad
2022 ≤
𝑥
< 2022.2.2
autodeskautocad_architecture
2022 ≤
𝑥
< 2022.1.2
autodeskautocad_electrical
2022 ≤
𝑥
< 2022.1.2
autodeskautocad_lt
2022 ≤
𝑥
< 2022.1.2
autodeskautocad_lt
2022 ≤
𝑥
< 2022.2.2
autodeskautocad_map_3d
2022 ≤
𝑥
< 2022.1.2
autodeskautocad_mechanical
2022 ≤
𝑥
< 2022.1.2
autodeskautocad_mep
2022 ≤
𝑥
< 2022.1.2
autodeskautocad_plant_3d
2022 ≤
𝑥
< 2022.1.2
autodeskcivil_3d
2022 ≤
𝑥
< 2022.1.2
autodeskinventor
2022 ≤
𝑥
< 2022.2
𝑥
= Vulnerable software versions