CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2021-40159: advance steel from 2022 (inclusive), before 2022.1.2 (exclusive); +11 more affected products

CVE-2021-40159. CVSS 3.1 base score 7.8 (HIGH, NVD). EPSS 0.02296 (percentile 0.82745), scored 2026-10-08.

Affected technology

advance steel · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad architecture · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad electrical · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad lt · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad map 3d · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad mechanical · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad mep · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

autocad plant 3d · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

civil 3d · from 2022 (inclusive), before 2022.1.2 (exclusive)
autodesk

inventor · 2019
autodesk

inventor · 2020
autodesk

inventor · 2021
autodesk

inventor · 2022
autodesk

Inventor · 2022, 2021, 2020, 2019
Vendor not specified by the source

Component: Not specified by the source

Attack conditions (NVD, CVSS 3.1): Local · No privileges required · User interaction required

What an attacker can do

The source reports that an attacker could access information they should not be able to access. NVD’s CVSS 3.1 assessment (base score 7.8/10) rates confidentiality, integrity and availability impact as high.

Published

CWE
CWE-200
CCR priority
31.8 /100 (P4)
CVSS 3.1
7.8 /10 · CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H · NVD
EPSS
0.02296 · percentile 0.82745 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2021-40159.html