High severity7.8NVD Advisory· Published Apr 11, 2022· Updated Jun 17, 2026
CVE-2022-25791
CVE-2022-25791
Description
A Memory Corruption vulnerability for DWF and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 may lead to code execution through maliciously crafted DLL files.
Affected products
14cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad:*:*:*:*:*:macos:*:*range: >=2022,<2022.2.2
- cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*range: >=2019,<2019.1.4
- (no CPE)range: 2022, 2021, 2020, 2019
- cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
- cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*Range: >=2019,<2019.1.4
cpe:2.3:a:autodesk:navisworks:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:autodesk:navisworks:*:*:*:*:*:*:*:*range: >=2022,<2022.2
- (no CPE)range: 2022
Patches
Vulnerability mechanics
References
1- www.autodesk.com/trust/security-advisories/adsk-sa-2022-0005nvdVendor Advisory
News mentions
0No linked articles in our index yet.