CVEs (27)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Autodesk 19Autocad Autocad Advance SteelAutocad Architecture+16 moreJun 17, 2026 Oct 7, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA, or RLC files. This vulnerability may be exploi...Show more |
An out-of-bounds read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Input. This vulnerability in conjunction wit...Show more |
A buffer over-read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Input. This vulnerability in conjunction with o...Show more |
A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while parsing PDF files. The vulnerability exists because the application fails...Show more |
1Autodesk 11Advance Steel AutocadAutocad Architecture+8 moreJun 17, 2026 Jun 25, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application to write in unexpected paths. In order to exploit this the attacker would need the victim to enable...Show more |
3Autodesk IconicsMitsubishielectric13Advance Steel AutocadAutocad Architecture+10 moreJun 17, 2026 Jun 25, 2021 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnerability can be exploited to execute arbitrary code. |
1Autodesk 14Autocad Autocad ArchitectureAutocad Civil 3d+11 moreApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file. |