Vulnerabilities > Autodesk > High

DATE CVE VULNERABILITY TITLE RISK
2022-10-03 CVE-2022-33889 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer.
local
low complexity
autodesk CWE-787
7.8
2022-10-03 CVE-2022-33890 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation.
local
low complexity
autodesk CWE-787
7.8
2022-10-03 CVE-2022-41301 Out-of-bounds Write vulnerability in Autodesk Subassembly Composer
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by read access violation.
local
low complexity
autodesk CWE-787
7.8
2022-08-10 CVE-2022-25793 Improper Validation of Specified Quantity in Input vulnerability in Autodesk 3DS MAX 2021/2021.3.8/2022
A Stack-based Buffer Overflow Vulnerability in Autodesk 3ds Max 2022, 2021, and 2020 may lead to code execution through the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer when parsing ActionScript Byte Code files.
local
low complexity
autodesk CWE-1284
7.8
2022-04-19 CVE-2022-27527 Out-of-bounds Write vulnerability in Autodesk Navisworks
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files.
local
low complexity
autodesk CWE-787
7.8
2022-04-18 CVE-2022-27525 Out-of-bounds Write vulnerability in Autodesk Design Review
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation.
local
low complexity
autodesk CWE-787
7.8
2022-04-13 CVE-2022-25795 Improper Handling of Exceptional Conditions vulnerability in Autodesk Autocad
A Memory Corruption Vulnerability in Autodesk TrueView 2022 and 2021 may lead to remote code execution through maliciously crafted DWG files.
local
low complexity
autodesk CWE-755
7.8
2022-04-13 CVE-2022-25797 Out-of-bounds Write vulnerability in Autodesk DWG Trueview 2021/2022
A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while parsing PDF files.
local
low complexity
autodesk CWE-787
7.8
2022-04-11 CVE-2022-25794 Out-of-bounds Read vulnerability in Autodesk FBX Review
An Out-Of-Bounds Read Vulnerability in Autodesk FBX Review version 1.5.2 and prior may lead to code execution through maliciously crafted ActionScript Byte Code 'ABC' files or information disclosure.
local
low complexity
autodesk CWE-125
7.8
2022-01-25 CVE-2021-40158 Out-of-bounds Read vulnerability in Autodesk products
A maliciously crafted JT file in Autodesk Inventor 2022, 2021, 2020, 2019 and AutoCAD 2022 may be forced to read beyond allocated boundaries when parsing the JT file.
local
low complexity
autodesk CWE-125
7.8