VYPR
High severity7.8NVD Advisory· Published Nov 5, 2024· Updated Jun 17, 2026

CVE-2024-7995

CVE-2024-7995

Description

A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the VRED Design application. Exploitation of this vulnerability may lead to code execution.

Affected products

3
  • cpe:2.3:a:autodesk:vred:*:*:*:*:design:*:*:*
    Range: >=2025,<2025.2
  • Autodesk/VRED Designcpe-rescue2 versions
    cpe:2.3:a:autodesk:vred_design:2025:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:autodesk:vred_design:2025:*:*:*:*:*:*:*range: 2025
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.