Vulnerability index

Browse CVEs

362 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Autodesk Desktop HIGH 7.8
CVE-2019-7365

DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An attacker may trick a user into downloading a maliciou…

Fix: after 7.0.16.29
Fix from $1,950 2019-12-03
Fbx Software Development Kit HIGH 7.8
CVE-2019-7366

Buffer overflow vulnerability in Autodesk FBX Software Development Kit version 2019.5. A user may be tricked into opening a malicious FBX file which …

Patch available
Fix from $1,950 2019-12-03
Design Review HIGH 7.8
CVE-2019-7362

DLL preloading vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018. An attacker may trick a user into opening a malicious DWF…

Patch available
Fix from $1,950 2019-08-23
Design Review HIGH 7.8
CVE-2019-7363

Use-after-free vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018. An attacker may trick a user into opening a malicious DWF…

Patch available
Fix from $1,950 2019-08-23
Advance Steel HIGH 7.8
CVE-2019-7364

DLL preloading vulnerability in versions 2017, 2018, 2019, and 2020 of Autodesk Advanced Steel, Civil 3D, AutoCAD, AutoCAD LT, AutoCAD Architecture, …

Patch available
Fix from $1,950 2019-08-23
Advance Steel HIGH 7.8
CVE-2019-7358

An exploitable heap overflow vulnerability in the DXF-parsing functionality in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD A…

Mitigation only
Fix from $1,950 2019-04-09
Advance Steel HIGH 7.8
CVE-2019-7359

An exploitable heap overflow vulnerability in the AcCellMargin handling code in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD …

Mitigation only
Fix from $1,950 2019-04-09
Advance Steel HIGH 7.8
CVE-2019-7360

An exploitable use-after-free vulnerability in the DXF-parsing functionality in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD …

Mitigation only
Fix from $1,950 2019-04-09
Advance Steel HIGH 7.8
CVE-2019-7361

An attacker may convince a victim to open a malicious action micro (.actm) file that has serialized data, which may trigger a code execution in Autod…

Mitigation only
Fix from $1,950 2019-04-09
Fbx Software Development Kit CRITICAL 9.8
CVE-2016-9303

Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code or cause an infinite loop condition whe…

Fix: after 2017.0
Fix from $2,300 2017-01-25
Fbx Software Development Kit CRITICAL 9.8
CVE-2016-9305

Improper handling in the Autodesk FBX-SDK before 2017.1 of type mismatches and previously deleted objects related to reading and converting malformed…

Fix: after 2017.0
Fix from $2,300 2017-01-25
Fbx Software Development Kit CRITICAL 9.8
CVE-2016-9306

Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed DA…

Fix: after 2017.0
Fix from $2,300 2017-01-25
Fbx Software Development Kit CRITICAL 9.8
CVE-2016-9307

Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed 3D…

Fix: after 2017.0
Fix from $2,300 2017-01-25
Fbx Software Development Kit HIGH 8.8
CVE-2016-9304

Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed DF…

Fix: after 2017.0
Fix from $1,950 2017-01-25
Autodesk Backburner HIGH 7.5
CVE-2016-2344

Stack-based buffer overflow in manager.exe in Backburner Manager in Autodesk Backburner 2016 2016.0.0.2150 and earlier allows remote attackers to exe…

Fix: after 2016.0.0.2150
Fix from $1,950 2016-03-28
Design Review MEDIUM 6.8
CVE-2015-8572

Multiple buffer overflows in Autodesk Design Review (ADR) before 2013 Hotfix 2 allow remote attackers to execute arbitrary code via crafted RLE data …

Mitigation only
Fix from $1,600 2015-12-15
Design Review MEDIUM 6.8
CVE-2015-8571

Integer overflow in Autodesk Design Review (ADR) before 2013 Hotfix 2 allows remote attackers to execute arbitrary code via a crafted biClrUsed value…

Mitigation only
Fix from $1,600 2015-12-15
Design Review MEDIUM 6.8
CVE-2014-9268

The AdView.AdViewer.1 ActiveX control in Autodesk Design Review (ADR) before 2013 Hotfix 1 allows remote attackers to execute arbitrary code via a cr…

Fix: after 2013
Fix from $1,600 2014-12-08
Sketchbook Pro HIGH 9.3
CVE-2014-3939EPSS 6%

Heap-based buffer overflow in Autodesk SketchBook Pro before 6.2.6 allows remote attackers to execute arbitrary code via crafted layer bitmap data in…

Fix: after 6.2.5
Fix from $1,950 2014-07-23
Sketchbook Pro HIGH 9.3
CVE-2014-3938

Integer overflow in Autodesk SketchBook Pro before 6.2.6 allows remote attackers to execute arbitrary code via crafted layer mask data in a PSD file,…

Fix: after 6.2.5
Fix from $1,950 2014-07-23
Vred HIGH 10.0
CVE-2014-2967EPSS 5%

Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library calls in Python API commands t…

Mitigation only
Fix from $1,950 2014-07-07
Sketchbook HIGH 9.3
CVE-2013-5365EPSS 5%

Heap-based buffer overflow in Autodesk SketchBook for Enterprise 2014, Pro, and Express before 6.25, and Copic Edition before 2.0.2 allows remote att…

Fix: after 6.2.4
Fix from $1,950 2014-04-02
Autocad HIGH 7.5
CVE-2014-0818

Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges and execute arbitrary VBScript code via a T…

Fix: after 2013
Fix from $1,950 2014-02-22
Autocad MEDIUM 6.8
CVE-2013-3665

Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute…

Patch available
Fix from $1,600 2013-07-18
Autocad MEDIUM 6.9
CVE-2010-5241

Multiple untrusted search path vulnerabilities in Autodesk AutoCAD 2010 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2)…

Mitigation only
Fix from $1,600 2012-09-07
Design Review 2011 MEDIUM 6.9
CVE-2010-5226

Multiple untrusted search path vulnerabilities in Autodesk Design Review 2011 11.0.0.86 allow local users to gain privileges via a Trojan horse (1) d…

Mitigation only
Fix from $1,600 2012-09-07
Autodesk Softimage HIGH 9.3
CVE-2009-3576

Autodesk Softimage 7.x and Softimage XSI 6.x allow remote attackers to execute arbitrary JavaScript code via a scene package containing a Scene Table…

No fix yet
Fix from $1,950 2009-11-24
3ds Max HIGH 9.3
CVE-2009-3577EPSS 5%

Autodesk 3D Studio Max (3DSMax) 6 through 9 and 2008 through 2010 allows remote attackers to execute arbitrary code via a .max file with a MAXScript …

No fix yet
Fix from $1,950 2009-11-24
Alias Wavefront Maya HIGH 9.3
CVE-2009-3578

Autodesk Maya 8.0, 8.5, 2008, 2009, and 2010 and Alias Wavefront Maya 6.5 and 7.0 allow remote attackers to execute arbitrary code via a (1) .ma or (…

Mitigation only
Fix from $1,950 2009-11-24
Design Review HIGH 9.3
CVE-2008-4471EPSS 7%

Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Revit Archit…

No fix yet
Fix from $1,950 2008-10-07