PT-2024-20936 · Maxon · Maxon Cinema 4D

Novocainemickey

·

Published

2024-02-21

·

Updated

2024-07-03

·

CVE-2024-25423

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MAXON CINEMA 4D version R2024.2.0
Description An issue in MAXON CINEMA 4D allows a local attacker to execute arbitrary code via a crafted c4d base.xdl64 file.
Recommendations For MAXON CINEMA 4D version R2024.2.0, consider removing or restricting access to the c4d base.xdl64 file as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2024-25423

Affected Products

Maxon Cinema 4D