Vulnerabilities > Autodesk > Autocad > 2020

DATE CVE VULNERABILITY TITLE RISK
2022-10-03 CVE-2022-33890 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation.
local
low complexity
autodesk CWE-787
7.8
2022-06-21 CVE-2022-27867 Use After Free vulnerability in Autodesk Autocad
A maliciously crafted JT file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to trigger use-after-free vulnerability.
network
autodesk CWE-416
6.8
2022-06-21 CVE-2022-27871 Allocation of Resources Without Limits or Throttling vulnerability in Autodesk products
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files.
network
autodesk CWE-770
6.8
2022-04-13 CVE-2022-25795 Improper Handling of Exceptional Conditions vulnerability in Autodesk Autocad
A Memory Corruption Vulnerability in Autodesk TrueView 2022 and 2021 may lead to remote code execution through maliciously crafted DWG files.
local
low complexity
autodesk CWE-755
7.8
2022-04-11 CVE-2022-25789 Use After Free vulnerability in Autodesk products
A maliciously crafted DWF, 3DS and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to trigger use-after-free vulnerability.
network
autodesk CWE-416
6.8
2022-04-11 CVE-2022-25790 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated boundaries when parsing the DWF files.
network
autodesk CWE-787
6.8
2022-04-11 CVE-2022-25791 Out-of-bounds Write vulnerability in Autodesk products
A Memory Corruption vulnerability for DWF and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 may lead to code execution through maliciously crafted DLL files.
4.4
2022-04-11 CVE-2022-25792 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted DXF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated buffer through Buffer overflow vulnerability.
network
autodesk CWE-787
6.8
2021-12-23 CVE-2021-40161 Out-of-bounds Write vulnerability in Autodesk products
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through PDFTron earlier than 9.0.7 version.
local
low complexity
autodesk CWE-787
7.8
2021-07-09 CVE-2021-27039 Out-of-bounds Write vulnerability in Autodesk Autocad and Design Review
A maliciously crafted TIFF and PCX file can be forced to read and write beyond allocated boundaries when parsing the TIFF and PCX file for based overflow.
network
autodesk CWE-787
6.8