Unrated severityNVD Advisory· Published Apr 1, 2025· Updated Feb 26, 2026
DWFX File Parsing Memory Corruption Vulnerability
CVE-2025-1660
Description
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected products
4cpe:2.3:a:autodesk:navisworks_freedom:2025:*:*:*:*:windows:*:*+ 3 more
- cpe:2.3:a:autodesk:navisworks_freedom:2025:*:*:*:*:windows:*:*range: 2025
- cpe:2.3:a:autodesk:navisworks_manage:2025:*:*:*:*:windows:*:*range: 2025
- cpe:2.3:a:autodesk:navisworks_simulate:2025:*:*:*:*:windows:*:*range: 2025
- (no CPE)
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.autodesk.com/products/autodesk-access/overviewmitrepatch
- www.autodesk.com/trust/security-advisories/adsk-sa-2025-0002mitrevendor-advisory
News mentions
0No linked articles in our index yet.