Filtered by vendor Autodesk
Subscribe
Total
381 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-14478 | 1 Autodesk | 1 Installer | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously created executable, when executed on the victim's machine, may allow a local low-privileged attacker to inject unauthenticated IPC messages into named pipes, modify pipe permissions or ownership, and potentially impact confidentiality, integrity, and availability. | |||||
| CVE-2026-14479 | 1 Autodesk | 1 Installer | 2026-09-04 | N/A | 5.5 MEDIUM |
| A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation of an input-specified position or offset, resulting in an out-of-range substring operation. A malicious actor may leverage this vulnerability to cause the NT AUTHORITY\SYSTEM service to terminate unexpectedly, resulting in a denial-of-service condition. | |||||
| CVE-2026-11803 | 1 Autodesk | 1 Revit | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-1289 | 1 Autodesk | 1 Revit | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, disclose sensitive data, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-7405 | 1 Autodesk | 12 Advance Steel, Autocad, Autocad Architecture and 9 more | 2026-09-04 | N/A | 5.5 MEDIUM |
| A maliciously crafted TIF file, when parsed through certain Autodesk products during image import, can cause an Out-of-Bounds Read in the image handling library. A malicious actor can leverage this vulnerability to cause a denial of service | |||||
| CVE-2026-7406 | 1 Autodesk | 12 Advance Steel, Autocad, Autocad Architecture and 9 more | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously crafted BMP file, when parsed through certain Autodesk products, can force a Untrusted Pointer Dereference vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |||||
| CVE-2026-8325 | 1 Autodesk | 1 Revit | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-10709 | 1 Autodesk | 1 Fbx Software Development Kit | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::FbxIO::BinaryReadSectionHeader. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |||||
| CVE-2026-10710 | 1 Autodesk | 1 Fbx Software Development Kit | 2026-09-04 | N/A | 7.8 HIGH |
| A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::ExtractDrive. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |||||
| CVE-2026-17550 | 1 Autodesk | 11 Advance Steel, Autocad, Autocad Architecture and 8 more | 2026-09-02 | N/A | 5.5 MEDIUM |
| A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash or disclose sensitive information. | |||||
| CVE-2026-16465 | 1 Autodesk | 11 Advance Steel, Autocad, Autocad Architecture and 8 more | 2026-09-02 | N/A | 6.1 MEDIUM |
| A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash or disclose sensitive information. | |||||
| CVE-2026-16463 | 1 Autodesk | 11 Advance Steel, Autocad, Autocad Architecture and 8 more | 2026-09-02 | N/A | 7.8 HIGH |
| A maliciously crafted DXF file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-16781 | 1 Autodesk | 1 3ds Max | 2026-08-28 | N/A | 5.5 MEDIUM |
| A maliciously crafted SVG file, when parsed through Autodesk 3ds Max, can trigger an Uncontrolled Recursion vulnerability. A malicious actor may leverage this vulnerability to cause the application to terminate unexpectedly, resulting in a denial-of-service. | |||||
| CVE-2026-16782 | 1 Autodesk | 1 3ds Max | 2026-08-28 | N/A | 5.3 MEDIUM |
| A maliciously crafted SVG file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-16783 | 1 Autodesk | 1 3ds Max | 2026-08-28 | N/A | 7.8 HIGH |
| A maliciously crafted ABC file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-19568 | 1 Autodesk | 1 3ds Max | 2026-08-28 | N/A | 7.8 HIGH |
| A maliciously crafted SVG file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |||||
| CVE-2026-7455 | 1 Autodesk | 1 3ds Max | 2026-08-28 | N/A | 7.8 HIGH |
| A maliciously crafted FLT file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | |||||
| CVE-2026-7453 | 1 Autodesk | 1 3ds Max | 2026-07-24 | N/A | 5.5 MEDIUM |
| A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can cause a Stack Exhaustion vulnerability, leading to a denial-of-service condition. | |||||
| CVE-2026-7454 | 1 Autodesk | 1 3ds Max | 2026-07-24 | N/A | 7.8 HIGH |
| A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |||||
| CVE-2026-7450 | 1 Autodesk | 1 3ds Max | 2026-07-24 | N/A | 5.5 MEDIUM |
| A maliciously crafted PAR file, when parsed through Autodesk 3ds Max, can force a NULL Pointer Dereference vulnerability. Successful exploitation may cause the application to crash, leading to a denial-of-service condition. | |||||
