VYPR
High severity7.8NVD Advisory· Published Nov 6, 2025· Updated Jun 17, 2026

CVE-2025-10885

CVE-2025-10885

Description

A maliciously crafted file, when executed on the victim's machine, can lead to privilege escalation to NT AUTHORITY/SYSTEM due to an insufficient validation of loaded binaries. An attacker with local and low-privilege access could exploit this to execute code as SYSTEM.

Affected products

3
  • cpe:2.3:a:autodesk:installer:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:autodesk:installer:*:*:*:*:*:*:*:*range: <2.19
    • cpe:2.3:a:autodesk:installer:2.18:*:*:*:*:*:*:*range: 2.18
    • (no CPE)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.