Vulnerabilities
Vulnerable Software
Autodesk:  >> Navisworks  >> 2020.2  Security Vulnerabilities
A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-10-07
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through Autodesk Image Processing component.
CVSS Score
7.8
EPSS Score
0.0
Published
2022-10-07
A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-10-07
A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocated buffer while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-10-07
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has already been freed while parsing them. This vulnerability may be exploited by attackers to execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-10-07
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files. It was fixed in PDFTron earlier than 9.0.7 version in Autodesk Navisworks 2022, and 2020.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-04-19
PDFTron prior to 9.0.7 version may be forced to read beyond allocated boundaries when parsing a maliciously crafted PDF file. This vulnerability can be exploited to execute arbitrary code.
CVSS Score
7.8
EPSS Score
0.004
Published
2021-12-23
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through PDFTron earlier than 9.0.7 version.
CVSS Score
7.8
EPSS Score
0.001
Published
2021-12-23


Contact Us

Shodan ® - All rights reserved