Vulnerabilities > Autodesk

DATE CVE VULNERABILITY TITLE RISK
2021-06-25 CVE-2021-27040 Out-of-bounds Read vulnerability in multiple products
A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file.
3.3
2021-06-25 CVE-2021-27041 Out-of-bounds Write vulnerability in multiple products
A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files.
7.8
2021-06-25 CVE-2021-27042 Improper Handling of Exceptional Conditions vulnerability in Autodesk products
A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files.
local
low complexity
autodesk CWE-755
7.8
2021-06-25 CVE-2021-27043 Out-of-bounds Write vulnerability in Autodesk products
An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application to write in unexpected paths.
local
low complexity
autodesk CWE-787
7.8
2021-05-28 CVE-2021-27032 Incorrect Default Permissions vulnerability in Autodesk Licensing Services 9.0.1.1462.100
Autodesk Licensing Installer was found to be vulnerable to privilege escalation issues.
local
low complexity
autodesk CWE-276
7.8
2021-04-19 CVE-2021-27031 Use After Free vulnerability in Autodesk FBX Review 1.4.0/1.4.1.0/1.5.0
A user may be tricked into opening a malicious FBX file which may exploit a use-after-free vulnerability in FBX's Review causing the application to reference a memory location controlled by an unauthorized third party, thereby running arbitrary code on the system.
local
low complexity
autodesk CWE-416
7.8
2021-04-19 CVE-2021-27030 Path Traversal vulnerability in Autodesk FBX Review 1.4.0/1.4.1.0/1.5.0
A user may be tricked into opening a malicious FBX file which may exploit a Directory Traversal Remote Code Execution vulnerability in FBX’s Review causing it to run arbitrary code on the system.
local
low complexity
autodesk CWE-22
7.8
2021-04-19 CVE-2021-27029 NULL Pointer Dereference vulnerability in Autodesk FBX Review 1.4.0/1.4.1.0/1.5.0
The user may be tricked into opening a malicious FBX file which may exploit a Null Pointer Dereference vulnerability in FBX's Review version 1.5.0 and prior causing the application to crash leading to a denial of service.
local
low complexity
autodesk CWE-476
5.5
2021-04-19 CVE-2021-27028 Out-of-bounds Write vulnerability in Autodesk FBX Review 1.4.0/1.4.1.0/1.5.0
A Memory Corruption Vulnerability in Autodesk FBX Review version 1.5.0 and prior may lead to remote code execution through maliciously crafted DLL files.
local
low complexity
autodesk CWE-787
7.8
2021-04-19 CVE-2021-27027 Out-of-bounds Read vulnerability in Autodesk FBX Review 1.4.0/1.4.1.0/1.5.0
An Out-Of-Bounds Read Vulnerability in Autodesk FBX Review version 1.5.0 and prior may lead to code execution through maliciously crafted DLL files or information disclosure.
local
low complexity
autodesk CWE-125
7.8