Перейти к содержимому
Noroxi

Записи Autodesk

381 опубликованных записей вендора autodesk.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
29
С записью об исправлении
5,8 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Охват bug bounty

Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.

Все записи

381 записей
  • CVE-2021-27030
    49В плане

    A user may be tricked into opening a malicious FBX file which may exploit a Directory Traversal Remote Code Execution vulnerability in FBX’s

    ВысокаяCVSS 7,8Эксплойта нетEPSS 60 %

    autodesk · fbx review19 апр. 2021 г.

  • CVE-2014-2967
    42В плане

    Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library calls in Python API c

    КритическаяCVSS 10,0Эксплойта нетEPSS 5 %

    autodesk · vred7 июл. 2014 г.

  • CVE-2016-9303
    40В плане

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code or cause an infinite loop cond

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    autodesk · fbx software development kit25 янв. 2017 г.

  • CVE-2016-9307
    40В плане

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting mal

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    autodesk · fbx software development kit25 янв. 2017 г.

  • CVE-2016-9306
    40В плане

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting mal

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    autodesk · fbx software development kit25 янв. 2017 г.

  • CVE-2008-4472
    39Наблюдать

    The UpdateEngine class in the LiveUpdate ActiveX control (LiveUpdate16.DLL 17.2.56), as used in Revit Architecture 2009 SP2 and Autodesk Des

    КритическаяCVSS 9,3Proof of conceptEPSS 8 %

    autodesk · design review7 окт. 2008 г.

  • CVE-2008-4471
    39Наблюдать

    Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Rev

    КритическаяCVSS 9,3Proof of conceptEPSS 7 %

    autodesk · design review7 окт. 2008 г.

  • CVE-2014-3939
    39Наблюдать

    Heap-based buffer overflow in Autodesk SketchBook Pro before 6.2.6 allows remote attackers to execute arbitrary code via crafted layer bitma

    КритическаяCVSS 9,3Эксплойта нетEPSS 6 %

    autodesk · sketchbook pro23 июл. 2014 г.

  • CVE-2013-5365
    39Наблюдать

    Heap-based buffer overflow in Autodesk SketchBook for Enterprise 2014, Pro, and Express before 6.25, and Copic Edition before 2.0.2 allows r

    КритическаяCVSS 9,3Эксплойта нетEPSS 5 %

    autodesk · sketchbook2 апр. 2014 г.

  • CVE-2009-3577
    39Наблюдать

    Autodesk 3D Studio Max (3DSMax) 6 through 9 and 2008 through 2010 allows remote attackers to execute arbitrary code via a .max file with a M

    КритическаяCVSS 9,3Proof of conceptEPSS 5 %

    autodesk · 3ds max24 нояб. 2009 г.

  • CVE-2016-9305
    39Наблюдать

    Improper handling in the Autodesk FBX-SDK before 2017.1 of type mismatches and previously deleted objects related to reading and converting

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    autodesk · fbx software development kit25 янв. 2017 г.

  • CVE-2023-29073
    39Наблюдать

    A maliciously crafted MODEL file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    autodesk · autocad22 нояб. 2023 г.

  • CVE-2023-29075
    39Наблюдать

    A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds Write.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    autodesk · autocad23 нояб. 2023 г.

  • CVE-2023-29074
    39Наблюдать

    A maliciously crafted CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds Write.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    autodesk · autocad23 нояб. 2023 г.

  • CVE-2023-29076
    39Наблюдать

    A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause memory corruption vu

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    autodesk · autocad23 нояб. 2023 г.

  • CVE-2022-33882
    39Наблюдать

    Under certain conditions, an attacker could create an unintended sphere of control through a vulnerability present in file delete operation

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    autodesk · autodesk desktop3 окт. 2022 г.

  • CVE-2009-3578
    38Наблюдать

    Autodesk Maya 8.0, 8.5, 2008, 2009, and 2010 and Alias Wavefront Maya 6.5 and 7.0 allow remote attackers to execute arbitrary code via a (1)

    КритическаяCVSS 9,3Proof of conceptEPSS 4 %

    autodesk · alias wavefront maya24 нояб. 2009 г.

  • CVE-2014-3938
    38Наблюдать

    Integer overflow in Autodesk SketchBook Pro before 6.2.6 allows remote attackers to execute arbitrary code via crafted layer mask data in a

    КритическаяCVSS 9,3Эксплойта нетEPSS 4 %

    autodesk · sketchbook pro23 июл. 2014 г.

  • CVE-2009-3576
    38Наблюдать

    Autodesk Softimage 7.x and Softimage XSI 6.x allow remote attackers to execute arbitrary JavaScript code via a scene package containing a Sc

    КритическаяCVSS 9,3Proof of conceptEPSS 3 %

    autodesk · autodesk softimage24 нояб. 2009 г.

  • CVE-2026-10789
    38Наблюдать

    MCP Extension Code Injection Vulnerability in Autodesk Fusion Desktop

    КритическаяCVSS 9,6Эксплойта нетEPSS 1 %

    autodesk · fusion22 июн. 2026 г.

  • CVE-2020-7082
    36Наблюдать

    A use-after-free vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to code execution on a system running it.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    autodesk · fbx software development kit17 апр. 2020 г.

  • CVE-2016-9304
    36Наблюдать

    Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting mal

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    autodesk · fbx software development kit25 янв. 2017 г.

  • CVE-2020-7081
    35Наблюдать

    A type confusion vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to arbitary code read/write on the system runnin

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    autodesk · fbx software development kit17 апр. 2020 г.

  • CVE-2022-27864
    35Наблюдать

    A Double Free vulnerability allows remote attackers to execute arbitrary code through DesignReview.exe application on PDF files within affec

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    autodesk · design review29 июл. 2022 г.

  • CVE-2025-10244
    34Наблюдать

    HTML Payload Stored Cross-Site Scripting (XSS) Vulnerability

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    autodesk · fusion23 сент. 2025 г.