VYPR

Navisworks

by Autodesk

CVEs (47)

  • CVE-2022-25790HigApr 11, 2022
    risk 0.51cvss 7.8epss 0.01

    A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated boundaries when parsing the DWF files. Exploitation of this vulnerability may lead to code execution.

  • CVE-2021-40161HigDec 23, 2021
    risk 0.51cvss 7.8epss 0.01

    A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through PDFTron earlier than 9.0.7 version.

  • CVE-2021-40160HigDec 23, 2021
    risk 0.51cvss 7.8epss 0.02

    PDFTron prior to 9.0.7 version may be forced to read beyond allocated boundaries when parsing a maliciously crafted PDF file. This vulnerability can be exploited to execute arbitrary code.

  • CVE-2021-40156HigSep 15, 2021
    risk 0.51cvss 7.8epss 0.01

    A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.

  • CVE-2021-40155HigSep 15, 2021
    risk 0.51cvss 7.8epss 0.01

    A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.

  • CVE-2021-27046HigSep 15, 2021
    risk 0.51cvss 7.8epss 0.00

    A Memory Corruption vulnerability for PDF files in Autodesk Navisworks 2019, 2020, 2021, 2022 may lead to code execution through maliciously crafted DLL files.

  • CVE-2021-27045HigSep 15, 2021
    risk 0.51cvss 7.8epss 0.01

    A maliciously crafted PDF file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the PDF file. This vulnerability can be exploited to execute arbitrary code.

Page 3 of 3