VYPR
High severity7.8NVD Advisory· Published Nov 15, 2024· Updated Jun 17, 2026

CVE-2024-9500

CVE-2024-9500

Description

A maliciously crafted DLL file when placed in temporary files and folders that are leveraged by the Autodesk Installer could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to insecure privilege management.

Affected products

3
  • cpe:2.3:a:autodesk:installer:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:autodesk:installer:*:*:*:*:*:*:*:*range: <2.10.0.20
    • cpe:2.3:a:autodesk:installer:2.10.0.17:*:*:*:*:*:*:*range: 2.10.0.17
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.