Vulnerabilities > Autodesk > Navisworks > High

DATE CVE VULNERABILITY TITLE RISK
2022-04-11 CVE-2022-27528 Use After Free vulnerability in Autodesk Navisworks 2022/2022.1
A maliciously crafted DWFX and SKP files in Autodesk Navisworks 2022 can be used to trigger use-after-free vulnerability.
local
low complexity
autodesk CWE-416
7.8
2021-12-23 CVE-2021-40160 Out-of-bounds Read vulnerability in Autodesk products
PDFTron prior to 9.0.7 version may be forced to read beyond allocated boundaries when parsing a maliciously crafted PDF file.
local
low complexity
autodesk CWE-125
7.8
2021-12-23 CVE-2021-40161 Out-of-bounds Write vulnerability in Autodesk products
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through PDFTron earlier than 9.0.7 version.
local
low complexity
autodesk CWE-787
7.8
2021-09-15 CVE-2021-27045 Out-of-bounds Read vulnerability in Autodesk Navisworks
A maliciously crafted PDF file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the PDF file.
local
low complexity
autodesk CWE-125
7.8
2021-09-15 CVE-2021-27046 Out-of-bounds Write vulnerability in Autodesk Navisworks
A Memory Corruption vulnerability for PDF files in Autodesk Navisworks 2019, 2020, 2021, 2022 may lead to code execution through maliciously crafted DLL files.
local
low complexity
autodesk CWE-787
7.8
2021-09-15 CVE-2021-40155 Out-of-bounds Read vulnerability in Autodesk Navisworks
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files.
local
low complexity
autodesk CWE-125
7.8
2021-09-15 CVE-2021-40156 Out-of-bounds Write vulnerability in Autodesk Navisworks
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files.
local
low complexity
autodesk CWE-787
7.8