← Back

CVE-2021-40156

nvd nist
Published: Sep 15, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.

Affected (4)

Products: Autodesk: Navisworks
1 product
Navisworks
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
Version 2019
Version 2020
Version 2021
Version 2022

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.