CVE-2026-16783
A local attacker can exploit multiple vulnerabilities in Autodesk 3ds Max to execute arbitrary code in the context of the affected process, disclose confidential information, manipulate data, or cause denial of service conditions.
CSIRTS triage
- What
- Multiple local vulnerabilities enable arbitrary code execution, information disclosure, data manipulation, and denial of service.
- Who is affected
- Local users on systems running Autodesk 3ds Max.
- Urgency
- Medium severity with local-only attack surface; patching is important but exposure is limited to local users.
- Action
- Apply Autodesk security patches for 3ds Max addressing the identified CVEs.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch CVE-2026-16783
Get an email if CVE-2026-16783 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.
Exploitation outlook
- Low exploitation risk0.13% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
Advisory coverage (2)
- medium[NEW] [medium] Autodesk 3ds Max: Multiple Vulnerabilitiescert-bund · 2026-08-25
- highCVE-2026-16783: A maliciously crafted ABC file, when parsed through Autodesk 3ds Max, can force an Out-of-Boun…nvd · 2026-08-24
External references
Embed the live status
— this badge updates automatically when the KEV or exploit status changes. How to embed it →
[](https://www.csirts.com/cve/CVE-2026-16783)