Autodesk Autocad Advance Steel vulnerabilities

62 known vulnerabilities affecting autodesk/autocad_advance_steel.

Total CVEs
62
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH58

Vulnerabilities

Page 1 of 4
CVE-2024-8599HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8599 [HIGH] CWE-119 CVE-2024-8599: A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-9489HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-9489 [HIGH] CWE-119 CVE-2024-9489: A maliciously crafted DWG file when parsed in ACAD.exe through Autodesk AutoCAD can force a Memory C A maliciously crafted DWG file when parsed in ACAD.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8588HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8588 [HIGH] CWE-125 CVE-2024-8588: A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-9997HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-9997 [HIGH] CWE-120 CVE-2024-9997: A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-9826HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-9826 [HIGH] CWE-416 CVE-2024-9826: A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-A A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-7992HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-7992 [HIGH] CWE-121 CVE-2024-7992: A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based produ A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force a Stack-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8600HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8600 [HIGH] CWE-119 CVE-2024-8600: A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-9996HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-9996 [HIGH] CWE-787 CVE-2024-9996: A maliciously crafted DWG file, when parsed in acdb25.dll through Autodesk AutoCAD, may force an Out A maliciously crafted DWG file, when parsed in acdb25.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8594HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8594 [HIGH] CWE-122 CVE-2024-8594: A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a H A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8590HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8590 [HIGH] CWE-416 CVE-2024-8590: A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-A A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-9827HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-9827 [HIGH] CWE-125 CVE-2024-9827: A maliciously crafted CATPART file when parsed in CC5Dll.dll through Autodesk AutoCAD can force an O A maliciously crafted CATPART file when parsed in CC5Dll.dll through Autodesk AutoCAD can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8593HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8593 [HIGH] CWE-787 CVE-2024-8593: A maliciously crafted CATPART file, when parsed in ASMKERN230A.dll through Autodesk AutoCAD, may for A maliciously crafted CATPART file, when parsed in ASMKERN230A.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8589HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8589 [HIGH] CWE-125 CVE-2024-8589: A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-7991HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-7991 [HIGH] CWE-787 CVE-2024-7991: A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based produ A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8598HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8598 [HIGH] CWE-119 CVE-2024-8598: A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8896HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8896 [HIGH] CWE-908 CVE-2024-8896: A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to acces A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to access a variable prior to initialization. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8596HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8596 [HIGH] CWE-787 CVE-2024-8596: A maliciously crafted MODEL file, when parsed in libodxdll.dll through Autodesk AutoCAD, may force a A maliciously crafted MODEL file, when parsed in libodxdll.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8592HIGHCVSS 7.8≥ 2024, < 2024.1.62024-10-29
CVE-2024-8592 [HIGH] CWE-120 CVE-2024-8592: A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can for A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8591HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8591 [HIGH] CWE-122 CVE-2024-8591: A maliciously crafted 3DM file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a A maliciously crafted 3DM file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Heap-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-8597HIGHCVSS 7.8≥ 2025, < 2025.1.12024-10-29
CVE-2024-8597 [HIGH] CWE-119 CVE-2024-8597: A maliciously crafted STP file when parsed in ASMDATAX230A.dll through Autodesk AutoCAD can force a A maliciously crafted STP file when parsed in ASMDATAX230A.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
nvd