Vulnerabilities > Autodesk > Autocad > 2010

DATE CVE VULNERABILITY TITLE RISK
2022-10-03 CVE-2022-33889 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer.
local
low complexity
autodesk CWE-787
7.8
2022-10-03 CVE-2022-33890 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation.
local
low complexity
autodesk CWE-787
7.8
2022-04-13 CVE-2022-25795 Improper Handling of Exceptional Conditions vulnerability in Autodesk Autocad
A Memory Corruption Vulnerability in Autodesk TrueView 2022 and 2021 may lead to remote code execution through maliciously crafted DWG files.
local
low complexity
autodesk CWE-755
7.8
2021-12-23 CVE-2021-40161 Out-of-bounds Write vulnerability in Autodesk products
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through PDFTron earlier than 9.0.7 version.
local
low complexity
autodesk CWE-787
7.8
2021-07-09 CVE-2021-27039 Out-of-bounds Write vulnerability in Autodesk Autocad and Design Review
A maliciously crafted TIFF and PCX file can be forced to read and write beyond allocated boundaries when parsing the TIFF and PCX file for based overflow.
network
autodesk CWE-787
6.8
2014-02-22 CVE-2014-0819 Improper Input Validation vulnerability in Autodesk Autocad
Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
4.4
2014-02-22 CVE-2014-0818 Code Injection vulnerability in Autodesk Autocad
Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges and execute arbitrary VBScript code via a Trojan horse FAS file in the FAS file search path.
network
low complexity
autodesk CWE-94
7.5
2012-09-07 CVE-2010-5241 Unspecified vulnerability in Autodesk Autocad 2010
Multiple untrusted search path vulnerabilities in Autodesk AutoCAD 2010 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) IBFS32.DLL file in the current working directory, as demonstrated by a directory that contains a .dwg file.
local
autodesk
6.9