VYPR

FBX

by Autodesk

CVEs (4)

  • CVE-2021-27030HigApr 19, 2021
    risk 0.55cvss 7.8epss 0.60

    A user may be tricked into opening a malicious FBX file which may exploit a Directory Traversal Remote Code Execution vulnerability in FBX’s Review causing it to run arbitrary code on the system.

  • CVE-2024-23139HigMar 18, 2024
    risk 0.51cvss 7.8epss 0.00

    A maliciously crafted ABC file, when parsed through Autodesk FBX, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

  • CVE-2021-40157HigSep 15, 2021
    risk 0.51cvss 7.8epss 0.01

    A user may be tricked into opening a malicious FBX file which may exploit an Untrusted Pointer Dereference vulnerability in FBX’s Review version 1.5.0 and prior causing it to run arbitrary code on the system.

  • CVE-2021-27031HigApr 19, 2021
    risk 0.51cvss 7.8epss 0.01

    A user may be tricked into opening a malicious FBX file which may exploit a use-after-free vulnerability in FBX's Review causing the application to reference a memory location controlled by an unauthorized third party, thereby running arbitrary code on the system.