Autodesk Navisworks vulnerabilities

47 known vulnerabilities affecting autodesk/navisworks.

Total CVEs
47
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH47

Vulnerabilities

Page 1 of 3
CVE-2025-1659HIGHCVSS 7.8≥ 2025, < 2025.52025-04-01
CVE-2025-1659 [HIGH] CWE-125 CVE-2025-1659: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2025-1658HIGHCVSS 7.8≥ 2025, < 2025.52025-04-01
CVE-2025-1658 [HIGH] CWE-125 CVE-2025-1658: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2025-1660HIGHCVSS 7.8≥ 2025, < 2025.52025-04-01
CVE-2025-1660 [HIGH] CWE-120 CVE-2025-1660: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corrupt A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
nvd
CVE-2024-11422HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-11422 [HIGH] CWE-787 CVE-2024-11422: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12193HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12193 [HIGH] CWE-787 CVE-2024-12193: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12670HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12670 [HIGH] CWE-122 CVE-2024-12670: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Hea A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12197HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12197 [HIGH] CWE-787 CVE-2024-12197: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12194HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12194 [HIGH] CWE-120 CVE-2024-12194: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corrupt A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
nvd
CVE-2024-12179HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12179 [HIGH] CWE-122 CVE-2024-12179: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Hea A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12178HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12178 [HIGH] CWE-787 CVE-2024-12178: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corrupt A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
nvd
CVE-2024-12671HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12671 [HIGH] CWE-787 CVE-2024-12671: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12199HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12199 [HIGH] CWE-787 CVE-2024-12199: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12198HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12198 [HIGH] CWE-787 CVE-2024-12198: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12191HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12191 [HIGH] CWE-787 CVE-2024-12191: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12200HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12200 [HIGH] CWE-787 CVE-2024-12200: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12669HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12669 [HIGH] CWE-122 CVE-2024-12669: A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Hea A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-12192HIGHCVSS 7.8≥ 2025, < 2025.42024-12-17
CVE-2024-12192 [HIGH] CWE-787 CVE-2024-12192: A maliciously crafted DWF file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds A maliciously crafted DWF file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-7674HIGHCVSS 7.8v2025v2025.1+1 more2024-09-30
CVE-2024-7674 [HIGH] CWE-122 CVE-2024-7674: A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can force a A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process.
nvd
CVE-2024-7671HIGHCVSS 7.8v2025v2025.1+1 more2024-09-30
CVE-2024-7671 [HIGH] CWE-787 CVE-2024-7671: A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, may force a A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
nvd
CVE-2024-7670HIGHCVSS 7.8v2025v2025.1+1 more2024-09-30
CVE-2024-7670 [HIGH] CWE-125 CVE-2024-7670: A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force an A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force an Out-of-Bounds Read. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd