Buffer Overflow Vulnerability in Autodesk Navisworks by Autodesk
CVE-2021-40156
7.8HIGH
Summary
A vulnerability exists in Autodesk Navisworks products 2019 through 2022 that allows attackers to exploit a maliciously crafted DWG file. When Navisworks parses these files, the application may write beyond its allocated memory boundaries, potentially enabling the execution of arbitrary code. This makes it crucial for users to apply necessary patches and adhere to security best practices to protect their systems.
Affected Version(s)
Autodesk Navisworks 2019, 2020, 2021, 2022
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved