HTTP: Autodesk AutoCAD Insecure FAS File Execution

This signature detects attempts to exploit a known vulnerability against Autodesk AutoCAD. A successful attack can lead to arbitrary code execution.

Extended Description

Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges and execute arbitrary VBScript code via a Trojan horse FAS file in the FAS file search path.

Affected Products

Autodesk autocad

References

BugTraq: 65745

CVE: CVE-2014-0818

Short Name
HTTP:AUTOCAD-FAS-FILE-EXEC
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
AutoCAD Autodesk CVE-2014-0818 Execution FAS File Insecure bid:65745
Release Date
04/25/2014
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Autodesk

CVSS Score

7.5

Found a potential security threat?