CVE-2024-7995: Autodesk Vred

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the VRED Design application. Exploitation of this vulnerability may lead to code execution.

Affected products

  • Autodesk Vred: from 2025, before 2025.2 (fixed in 2025.2)

Published 2024-11-05. Last modified 2026-06-17.