Skip to main content

Vendor/product archive

autodesk / dwg_trueview CVEs

Beta · best-effort

22 CVEs tagged to autodesk / dwg_trueview0 Critical, 20 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2025-1276

Published Apr 15, 2025

A maliciously crafted DWG file, when parsed through certain Autodesk applications, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerabilit…

CVSS 7.8 · High
evidence mentions
3
Buzz score
18.9

CVE-2025-1275

Published Apr 15, 2025

A maliciously crafted JPG file, when linked or imported into certain Autodesk applications, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vuln…

CVSS 7.8 · High
evidence mentions
3
Buzz score
18.9

CVE-2024-9997

Published Oct 29, 2024

A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to…

CVSS 7.8 · High

CVE-2024-9996

Published Oct 29, 2024

A maliciously crafted DWG file, when parsed in acdb25.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerabili…

CVSS 7.8 · High

CVE-2024-9489

Published Oct 29, 2024

A maliciously crafted DWG file when parsed in ACAD.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to c…

CVSS 7.8 · High

CVE-2024-8896

Published Oct 29, 2024

A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to access a variable prior to initialization. A malicious actor can leverage this vulne…

CVSS 7.8 · High

CVE-2024-7992

Published Oct 29, 2024

A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force a Stack-based Buffer Overflow. A malicious actor can leverage th…

CVSS 7.8 · High

CVE-2024-7991

Published Oct 29, 2024

A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, may force an Out-of-Bounds Write vulnerability. A malicious actor may leve…

CVSS 7.8 · High

CVE-2024-7305

Published Aug 20, 2024

A maliciously crafted DWF file, when parsed in AdDwfPdk.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerabi…

CVSS 7.8 · High

CVE-2024-23138

Published Mar 18, 2024

A maliciously crafted DWG file when parsed through Autodesk DWG TrueView can be used to cause a Stack-based Overflow. A malicious actor can leverage this vulnerability to cause a…

CVSS 7.8 · High

CVE-2022-42945

Published Dec 19, 2022

DWG TrueViewTM 2023 version has a DLL Search Order Hijacking vulnerability. Successful exploitation by a malicious attacker could result in remote code execution on the target sys…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-27524

Published Apr 13, 2022

An out-of-bounds read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Inp…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-27523

Published Apr 13, 2022

A buffer over-read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Input.…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-25797

Published Apr 13, 2022

A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while parsing PDF files. The vulnerabi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27043

Published Jun 25, 2021

An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application to write in unexpected paths. In order to exploit this the…

CVSS 7.8 · High

CVE-2021-27040

Published Jun 25, 2021

A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnerability can be exploited to execute arbitrary code.

CVSS 3.3 · Low

CVE-2013-3665

Published Jul 18, 2013

Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted…

CVSS 6.8 · Medium
Showing 1-22 of 22 CVEsPage 1 of 1