Vulnerabilities > Autodesk > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-04-11 CVE-2022-25796 Double Free vulnerability in Autodesk Navisworks 2022
A Double Free vulnerability allows remote malicious actors to execute arbitrary code on DWF file in Autodesk Navisworks 2022 within affected installations.
network
autodesk CWE-415
6.8
2022-04-11 CVE-2022-27528 Use After Free vulnerability in Autodesk Navisworks 2022
A maliciously crafted DWFX and SKP files in Autodesk Navisworks 2022 can be used to trigger use-after-free vulnerability.
network
autodesk CWE-416
6.8
2021-12-23 CVE-2021-40160 Out-of-bounds Read vulnerability in Autodesk products
PDFTron prior to 9.0.7 version may be forced to read beyond allocated boundaries when parsing a maliciously crafted PDF file.
network
autodesk CWE-125
6.8
2021-09-15 CVE-2021-27045 Out-of-bounds Read vulnerability in Autodesk Navisworks
A maliciously crafted PDF file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the PDF file.
network
autodesk CWE-125
6.8
2021-09-15 CVE-2021-27046 Out-of-bounds Write vulnerability in Autodesk Navisworks
A Memory Corruption vulnerability for PDF files in Autodesk Navisworks 2019, 2020, 2021, 2022 may lead to code execution through maliciously crafted DLL files.
4.4
2021-09-15 CVE-2021-40155 Out-of-bounds Read vulnerability in Autodesk Navisworks
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files.
network
autodesk CWE-125
6.8
2021-09-15 CVE-2021-40156 Out-of-bounds Write vulnerability in Autodesk Navisworks
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files.
network
autodesk CWE-787
6.8
2021-09-15 CVE-2021-27044 Out-of-bounds Write vulnerability in Autodesk FBX Review 1.4.0
A Out-Of-Bounds Read/Write Vulnerability in Autodesk FBX Review version 1.4.0 may lead to remote code execution through maliciously crafted DLL files or information disclosure.
network
autodesk CWE-787
6.8
2021-07-09 CVE-2021-27033 Double Free vulnerability in Autodesk Design Review
A Double Free vulnerability allows remote attackers to execute arbitrary code on PDF files within affected installations of Autodesk Design Review 2018, 2017, 2013, 2012, 2011.
network
autodesk CWE-415
6.8
2021-07-09 CVE-2021-27034 Out-of-bounds Write vulnerability in Autodesk Design Review
A heap-based buffer overflow could occur while parsing PICT, PCX, RCL or TIFF files in Autodesk Design Review 2018, 2017, 2013, 2012, 2011.
network
autodesk CWE-787
6.8