Known vulnerabilities in Autodesk Infraworks - page 4

Vendor: Autodesk
Software CPE: cpe:2.3:a:autodesk:autodesk_infraworks:*:*:*:*:*:*:*:*
Total vulnerabilities: 88
Public exploits: 12
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Autodesk Infraworks Autodesk Infraworks is affected by 88 known vulnerabilities: 1 critical, 26 high, 37 medium, 24 low Critical High Medium Low

Vulnerabilities (88)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72076 - Incorrect Authorization
CVE-2020-7692
CWE-863 High
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 08.02.2023 SB2020070955
SB2023020889
SB2023022307
and 9 more
#VU64524 - Improper Neutralization of Special Elements used in an Expression Language Statement
CVE-2022-22980
CWE-917 High
Available
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 21.06.2022 SB2022062101
SB2022112938
SB2023042635
and 2 more
#VU61952 - Memory corruption
CVE-2022-25797
CWE-119 High
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 07.04.2022 SB2022040706
SB2022042625
#VU61951 - Out-of-bounds read
CVE-2022-27524
CWE-125 Medium
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 07.04.2022 SB2022040706
SB2022042625
#VU61950 - Out-of-bounds read
CVE-2022-27523
CWE-125 Medium
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 07.04.2022 SB2022040706
SB2022042625
#VU61810 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-43797
CWE-444 Medium
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 02.04.2022 SB2021120923
SB2022040202
SB2022042223
and 49 more
#VU61799 - Out-of-bounds write
CVE-2020-36518
CWE-787 Medium
No
No
2020.2 Hotfix 7, 2021.2 Hotfix 7, 2022.1.5 Hotfix 5, 2023.0.1 Hotfix 1 01.04.2022 SB2022040113
SB2022040114
SB2022040115
and 147 more
#VU60986 - Improper input validation
CVE-2020-28491
CWE-20 Medium
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 03.03.2022 SB2022030316
SB2022030322
SB2022062413
and 12 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
2020.2 Hotfix 7, 2021.2 Hotfix 7, 2022.1.5 Hotfix 5, 2023.0.1 Hotfix 1 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55804 - Uncontrolled Search Path Element
CVE-2021-36770
CWE-427 Low
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 12.08.2021 SB2021081204
SB2021081205
SB2021092202
and 13 more
#VU54379 - Out-of-bounds write
CVE-2021-27043
CWE-787 High
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 24.06.2021 SB2021062412
SB2021062413
SB2021062414
and 9 more
#VU54378 - Memory corruption
CVE-2021-27042
CWE-119 High
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 24.06.2021 SB2021062412
SB2021062413
SB2021062414
and 9 more
#VU54377 - Memory corruption
CVE-2021-27041
CWE-119 High
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 24.06.2021 SB2021062412
SB2021062413
SB2021062414
and 11 more
#VU54376 - Out-of-bounds read
CVE-2021-27040
CWE-125 High
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 24.06.2021 SB2021062412
SB2021062413
SB2021062414
and 10 more
#VU51835 - Cleartext Storage of Sensitive Information
CVE-2021-21290
CWE-312 Low
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 01.04.2021 SB2021020813
SB2021040626
SB2021050706
and 42 more
#VU49739 - Improper input validation
CVE-2020-5421
CWE-20 Medium
Available
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 20.01.2021 SB2021012002
SB2021012008
SB2021012015
and 39 more
#VU48175 - Improper input validation
CVE-2020-27955
CWE-20 High
Available
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 05.11.2020 SB2020110606
SB2022042625
#VU25355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-20444
CWE-444 Medium
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 14.02.2020 SB2020012928
SB2020022601
SB2020031305
and 36 more
#VU25353 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-7238
CWE-444 Medium
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 14.02.2020 SB2020021409
SB2020022521
SB2020022601
and 16 more
#VU22825 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-16869
CWE-444 Medium
No
No
2021.2 Hotfix 9, 2023.1 Hotfix 1 18.11.2019 SB2019092616
SB2019111903
SB2019112016
and 30 more


Showing elements 61 - 80 out of 88