CVE-2013-3665
UnknownEPSS 2.68%
Last modified
CVE-2013-3665 is a vulnerability of currently unknown severity. Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file.. EPSS estimates a 2.68% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Autodesk | Autocad | 2011 |
| Autodesk | Autocad | 2012 |
| Autodesk | Autocad | 2013 |
| Autodesk | Autocad | 2014 |
| Autodesk | Autocad Architecture | 2011 |
| Autodesk | Autocad Architecture | 2012 |
| Autodesk | Autocad Architecture | 2013 |
| Autodesk | Autocad Architecture | 2014 |
| Autodesk | Autocad Civil 3d | 2011 |
| Autodesk | Autocad Civil 3d | 2012 |
| Autodesk | Autocad Civil 3d | 2013 |
| Autodesk | Autocad Civil 3d | 2014 |
| Autodesk | Autocad Ecscad | 2011 |
| Autodesk | Autocad Ecscad | 2012 |
| Autodesk | Autocad Ecscad | 2013 |
| Autodesk | Autocad Ecscad | 2014 |
| Autodesk | Autocad Electrical | 2011 |
| Autodesk | Autocad Electrical | 2012 |
| Autodesk | Autocad Electrical | 2013 |
| Autodesk | Autocad Electrical | 2014 |
| Autodesk | Autocad Lt | 2011 |
| Autodesk | Autocad Lt | 2012 |
| Autodesk | Autocad Lt | 2013 |
| Autodesk | Autocad Lt | 2014 |
| Autodesk | Autocad Map 3d | 2011 |
| Autodesk | Autocad Map 3d | 2012 |
| Autodesk | Autocad Map 3d | 2013 |
| Autodesk | Autocad Map 3d | 2014 |
| Autodesk | Autocad Mechanical | 2011 |
| Autodesk | Autocad Mechanical | 2012 |
| Autodesk | Autocad Mechanical | 2013 |
| Autodesk | Autocad Mechanical | 2014 |
| Autodesk | Autocad Mep | 2011 |
| Autodesk | Autocad Mep | 2012 |
| Autodesk | Autocad Mep | 2013 |
| Autodesk | Autocad Mep | 2014 |
| Autodesk | Autocad P\&Id | 2011 |
| Autodesk | Autocad P\&Id | 2012 |
| Autodesk | Autocad P\&Id | 2013 |
| Autodesk | Autocad P\&Id | 2014 |
| Autodesk | Autocad Plant 3d | 2011 |
| Autodesk | Autocad Plant 3d | 2012 |
| Autodesk | Autocad Plant 3d | 2013 |
| Autodesk | Autocad Plant 3d | 2014 |
| Autodesk | Autocad Structural Detailing | 2011 |
| Autodesk | Autocad Structural Detailing | 2012 |
| Autodesk | Autocad Structural Detailing | 2013 |
| Autodesk | Autocad Structural Detailing | 2014 |
| Autodesk | Autocad Utility Design | 2011 |
| Autodesk | Autocad Utility Design | 2012 |
Showing 50 of 56 affected configurations. See NVD for the full list.
References
- http://usa.autodesk.com/adsk/servlet/ps/dl/item?id=21972896&linkID=9240618&siteID=123112Patch, Vendor Advisory
- http://usa.autodesk.com/adsk/servlet/ps/dl/item?id=21972896&linkID=9240618&siteID=123112Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-3665?
Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file.
How severe is CVE-2013-3665?
Severity scoring for CVE-2013-3665 is pending analysis. The EPSS model estimates a 2.68% probability of exploitation in the next 30 days.
How do I fix CVE-2013-3665?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-3659The NTT DOCOMO overseas usage application 2.0.0 through 2.0.…
- CVE-2013-3660The EPATHOBJ::pprFlattenRec function in win32k.sys in the ke…7.8
- CVE-2013-3661The EPATHOBJ::bFlatten function in win32k.sys in Microsoft W…
- CVE-2013-3662Timbre SketchUp (formerly Google SketchUp) before 8 Maintena…
- CVE-2013-3663Heap-based buffer overflow in paintlib, as used in Trimble S…
- CVE-2013-3664Trimble SketchUp (formerly Google SketchUp) before 2013 (13.…
- CVE-2013-3666The LG Hidden Menu component for Android on the LG Optimus G…
- CVE-2013-3667The software update mechanism as used in Bare Bones Software…
- CVE-2013-3670The rle_unpack function in vmdav.c in libavcodec in FFmpeg g…
- CVE-2013-3671The format_line function in log.c in libavutil in FFmpeg bef…
- CVE-2013-3672The mm_decode_inter function in mmvideo.c in libavcodec in F…
- CVE-2013-3673The gif_decode_frame function in gifdec.c in libavcodec in F…
Are you affected by CVE-2013-3665?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
