Autodesk AutoCAD Uninitialized Variable Vulnerability in CATPRODUCT File Parsing

Vulnerability

An uninitialized variable vulnerability has been identified in Autodesk AutoCAD. This issue arises when a maliciously crafted CATPRODUCT file is parsed by the application. A malicious actor could exploit this vulnerability to cause a crash, read sensitive data, or execute arbitrary code within the context of the current process.

Impact

Exploitation of this vulnerability can lead to application crashes, unauthorized access to sensitive data, or arbitrary code execution in the context of the current process.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
2.5
exploitability
4.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.