← Back to search

CVE-2026-10710

7.8 HIGH

Published 2026-08-04 · Updated 2026-08-05

AI risk analysis

Summary
The flaw is a stack-based buffer overflow in fbxsdk::ExtractDrive when processing maliciously crafted FBX files, allowing arbitrary code execution. This matters because it can lead to unauthorized access and system compromise.
Exploitability
Exploitation requires the target application to parse a specially crafted FBX file; this is moderately difficult as it depends on user input or specific file handling conditions.
Blast radius
If exploited, the impact could be severe, leading to full control of the affected system by an attacker.
Prioritized remediation
Update to the latest version of Autodesk FBX SDK that addresses this vulnerability.
rcefile-attacksdkfbx

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::ExtractDrive. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-121

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.