CVE-2014-2967
Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library calls in Python API commands to the integrated web server.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0436 (4.4%)
Percentile: 89.0%
EPSS: 2026-05-06
Affects
autodesk:vredTechnical description
Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library calls in Python API commands to the integrated web server.
Published: 7/7/2014, 11:01:29 AM
Last modified: 5/6/2026, 10:30:45 PM