CVE-2025-1432
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Mar 13, 2025
CWE ID 416
Summary
CVE-2025-1432 is a use-after-free vulnerability affecting Autodesk AutoCAD software. A specially crafted 3DM file can cause this issue, leading to a crash or potentially allowing a malicious actor to read sensitive information or execute arbitrary code within the context of the current process. This vulnerability poses a significant risk, especially in environments where users frequently exchange or open untrusted 3DM files. Autodesk has released a patch to address this issue, and users are strongly encouraged to install it to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.