Total vulnerabilities in the database
A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process.
Software | From | Fixed in |
---|---|---|
autodesk / navisworks | 2025.2 | 2025.2.x |
autodesk / navisworks | 2025.1 | 2025.1.x |
autodesk / navisworks | 2025 | 2025.x |