VYPR

AdODIS-installer

by Autodesk

CVEs (2)

  • CVE-2026-14478HigAug 12, 2026
    risk 0.51cvss 7.8epss

    A maliciously created executable, when executed on the victim's machine, may allow a local low-privileged attacker to inject unauthenticated IPC messages into named pipes, modify pipe permissions or ownership, and potentially impact confidentiality, integrity, and availability.

  • CVE-2026-14479MedAug 12, 2026
    risk 0.36cvss 5.5epss

    A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation of an input-specified position or offset, resulting in an out-of-range substring operation. A malicious actor may leverage this vulnerability to cause the NT…