Home/Product/autodesk infraworks
Product

autodesk infraworks

9 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-29068
>= 2021 and < 2021.2
A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabiliti
7.8HIGH
CVE-2023-25004
>= 2021 and < 2021.2
A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of
7.8HIGH
CVE-2023-25003
>= 2021 and < 2021.2
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / re
7.8HIGH
CVE-2023-25005
>= 2021.0 and < 2021.2
A maliciously crafted DLL file can be forced to read beyond allocated boundaries in Autodesk InfraWorks 2023, and 2021 when parsin
7.8HIGH
CVE-2021-40166
>= 2019 and < 2019.3
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has already be
7.8HIGH
CVE-2021-40165
>= 2019 and < 2019.3
A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocate
7.8HIGH
CVE-2021-40164
>= 2019 and < 2019.3
A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execu
7.8HIGH
CVE-2021-40163
>= 2019 and < 2019.3
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through Autodesk Image Processi
7.8HIGH
CVE-2021-40162
>= 2019 and < 2019.3
A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated b
7.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin