Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Revit
(Autodesk)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 16 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-06-27 | CVE-2023-29068 | A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context of the current process. | Alias, Autocad, Autocad_advance_steel, Autocad_architecture, Autocad_civil_3d, Autocad_electrical, Autocad_lt, Autocad_map_3d, Autocad_mechanical, Autocad_mep, Autocad_plant_3d, Infraworks, Inventor, Maya_usd, Navisworks, Revit, Vred | 7.8 | ||
2023-06-27 | CVE-2023-25002 | A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution. | 3ds_max, Navisworks, Revit, Vred | 7.8 | ||
2024-10-16 | CVE-2024-7993 | A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process. | Revit | 7.8 | ||
2024-10-16 | CVE-2024-7994 | A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Stack-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | Revit | 7.8 | ||
2024-08-21 | CVE-2024-37008 | A maliciously crafted DWG file, when parsed in Revit, can force a stack-based buffer overflow. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | Revit | 7.8 | ||
2005-12-31 | CVE-2005-4710 | Unspecified vulnerability in multiple Autodesk and AutoCAD products and product families from 2006 and earlier allows remote attackers to "gain inappropriate access to another local user's computer," aka ID DL5549329. | 3ds_max, Architectural_desktop, Autocad, Autocad_civil_3d, Autocad_electrical, Autocad_lt, Autocad_mechanical, Building_systems, Civil_design, Inventor, Land_desktop, Map_3d, Raster_design, Revit, Revit_structure, Survey, Utility_design, Viz | N/A |