CVE-2025-5335: Autodesk Installer

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A maliciously crafted binary file when downloaded could lead to escalation of privileges to NT AUTHORITY/SYSTEM due to an untrusted search path being utilized in the Autodesk Installer application. Exploitation of this vulnerability may lead to code execution.

Affected products

  • Autodesk Installer: before 2.15 (fixed in 2.15)

Published 2025-06-10. Last modified 2026-06-17.