A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
CVE ID: CVE-2024-37002
CVSS Base Severity: HIGH
CVSS Base Score: 7.8
Vendor: Autodesk
Product: AutoCAD
EPSS Score: 0.07% (probability of being exploited)
EPSS Percentile: 31.36% (scored less or equal to compared to others)
EPSS Date: 2025-02-25 (when was this score calculated)