Autodesk VRED Pro 2014 < SR1 SP8 Remote Code Execution
Critical Nessus Plugin ID 76774
SynopsisAn application on the remote host is affected by a remote code execution vulnerability.
DescriptionThe remote host has a version of Autodesk VRED Pro that is vulnerable to an unauthenticated remote code execution via a Python API exposed by its built-in web server. This can allow a remote attacker to execute arbitrary code on the host.
SolutionUpgrade to Autodesk VRED Pro 2014 SR1 SP8 or higher.