A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to execution of arbitrary code in the context of the current process due to an untrusted search path being utilized.
References
Link | Resource |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2025-0014 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
30 Jul 2025, 17:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.autodesk.com/trust/security-advisories/adsk-sa-2025-0014 - Vendor Advisory | |
First Time |
Autodesk navisworks Manage
Autodesk inventor Autodesk vault Autodesk revit Autodesk Autodesk navisworks Simulate Autodesk infrastructure Parts Editor |
|
CPE | cpe:2.3:a:autodesk:inventor:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:vault:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:navisworks_simulate:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:infrastructure_parts_editor:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:navisworks_manage:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:revit:*:*:*:*:*:*:*:* |
|
Summary |
|
24 Jul 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-24 17:15
Updated : 2025-07-30 17:45
NVD link : CVE-2025-5039
Mitre link : CVE-2025-5039
CVE.ORG link : CVE-2025-5039
JSON object : View
Products Affected
autodesk
- revit
- inventor
- navisworks_simulate
- infrastructure_parts_editor
- vault
- navisworks_manage
CWE
CWE-426
Untrusted Search Path