← Back

Autodesk

autodesk

361 CVEs • 74 products

Products (74)

Click to collapse
Toggle
Autocad
autocad
Autocad Mep
autocad_mep
Advance Steel
advance_steel
Civil 3d
civil_3d
Autocad Lt
autocad_lt
Navisworks
navisworks
Design Review
design_review
Revit
revit
3ds Max
3ds_max
Dwg Trueview
dwg_trueview
Inventor
inventor
Fusion
fusion
Fbx Review
fbx_review
Infraworks
infraworks
Autocad P&id
autocad_p&id
Vred
vred
Maya Usd
maya_usd
3ds Max Usd
3ds_max_usd
Installer
installer
Maya
maya
Alias
alias
Dwf Viewer
dwf_viewer
Vault
vault
Civil Design
civil_design
Land Desktop
land_desktop
Map 3d
map_3d
Raster Design
raster_design
Survey
survey
Utility Design
utility_design
Viz
viz
Backburner
backburner
Autodesk Maya
autodesk_maya
Autocad Ecscad
autocad_ecscad
Sketchbook
sketchbook
Dynamo Bim
dynamo_bim
Fusion 360
fusion_360
Revit Lt
revit_lt

CVEs (361)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Autodesk
1Subassembly Composer
May 14, 2025
Oct 14, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilitie...Show more
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
1Design Review
May 14, 2025
Oct 14, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PCT file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities coul...Show more
A maliciously crafted PCT file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
1Subassembly Composer
May 14, 2025
Oct 14, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabiliti...Show more
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
1Fbx Software Development Kit
May 14, 2025
Oct 14, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
An Out-Of-Bounds Write Vulnerability in Autodesk FBX SDK 2020 version and prior may lead to code execution through maliciously crafted FBX files or information disclosure.
1Autodesk
1Fbx Software Development Kit
May 14, 2025
Oct 14, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A user may be tricked into opening a malicious FBX file which may exploit a use-after-free vulnerability in Autodesk FBX SDK 2020 version causing the application to reference a memory location controlled by an unauthoriz...Show more
A user may be tricked into opening a malicious FBX file which may exploit a use-after-free vulnerability in Autodesk FBX SDK 2020 version causing the application to reference a memory location controlled by an unauthorized third party, thereby running arbitrary code on the system.Show less
1Autodesk
1Fbx Software Development Kit
May 14, 2025
Oct 14, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
An Out-Of-Bounds Read Vulnerability in Autodesk FBX SDK version 2020. and prior may lead to code execution or information disclosure through maliciously crafted FBX files. This vulnerability in conjunction with other vul...Show more
An Out-Of-Bounds Read Vulnerability in Autodesk FBX SDK version 2020. and prior may lead to code execution or information disclosure through maliciously crafted FBX files. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
19Autocad
Autocad Advance SteelAutocad Architecture+16 more
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has already been freed while parsing them. This vulnerability may be exploited by attackers to execute a...Show more
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has already been freed while parsing them. This vulnerability may be exploited by attackers to execute arbitrary code.Show less
1Autodesk
19Autocad
Autocad Advance SteelAutocad Architecture+16 more
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocated buffer while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited...Show more
A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocated buffer while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.Show less
1Autodesk
19Autocad
Autocad Advance SteelAutocad Architecture+16 more
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
1Autodesk
19Autocad
Autocad Advance SteelAutocad Architecture+16 more
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through Autodesk Image Processing component.
1Autodesk
19Autocad
Autocad Advance SteelAutocad Architecture+16 more
Nov 21, 2024
Oct 7, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA, or RLC files. This vulnerability may be exploi...Show more
A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.Show less
1Autodesk
1Autodesk Desktop
Nov 21, 2024
Oct 3, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Under certain conditions, an attacker could create an unintended sphere of control through a vulnerability present in file delete operation in Autodesk desktop app (ADA). An attacker could leverage this vulnerability to...Show more
Under certain conditions, an attacker could create an unintended sphere of control through a vulnerability present in file delete operation in Autodesk desktop app (ADA). An attacker could leverage this vulnerability to escalate privileges and execute arbitrary code.Show less
1Autodesk
1Subassembly Composer
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilitie...Show more
A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
11Autocad
Autocad Advance SteelAutocad Architecture+8 more
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilitie...Show more
A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
11Autocad
Autocad Advance SteelAutocad Architecture+8 more
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer. This vulnerability could lead to arbitrary code...Show more
A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer. This vulnerability could lead to arbitrary code execution.Show less
1Autodesk
10Autocad
Autocad Advance SteelAutocad Architecture+7 more
May 20, 2025
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A malicious crafted Dwg2Spd file when processed through Autodesk DWG application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could...Show more
A malicious crafted Dwg2Spd file when processed through Autodesk DWG application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less
1Autodesk
10Autocad
Autocad Advance SteelAutocad Architecture+7 more
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted PDF file when parsed through Autodesk AutoCAD 2023 causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code in the...Show more
A maliciously crafted PDF file when parsed through Autodesk AutoCAD 2023 causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code in the context of the current process.Show less
1Autodesk
10Autocad
Autocad Advance SteelAutocad Architecture+7 more
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted MODEL and SLDPRT file can be used to write beyond the allocated buffer while parsing through Autodesk AutoCAD 2023, 2022, 2021, 2020, and Maya 2023 and 2022. The vulnerability exists because the app...Show more
A maliciously crafted MODEL and SLDPRT file can be used to write beyond the allocated buffer while parsing through Autodesk AutoCAD 2023, 2022, 2021, 2020, and Maya 2023 and 2022. The vulnerability exists because the application fails to handle crafted MODEL and SLDPRT files, which causes an unhandled exception. A malicious actor could leverage this vulnerability to execute arbitrary code.Show less
1Autodesk
10Autocad
Autocad Advance SteelAutocad Architecture+7 more
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
A maliciously crafted X_B, CATIA, and PDF file when parsed through Autodesk AutoCAD 2023 and 2022 can be used to write beyond the allocated buffer. This vulnerability can lead to arbitrary code execution.
1Autodesk
10Autocad
Autocad Advance SteelAutocad Architecture+7 more
Nov 21, 2024
Oct 3, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
Parsing a maliciously crafted X_B file can force Autodesk AutoCAD 2023 and 2022 to read beyond allocated boundaries. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the contex...Show more
Parsing a maliciously crafted X_B file can force Autodesk AutoCAD 2023 and 2022 to read beyond allocated boundaries. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.Show less