Known vulnerabilities in Autodesk Infraworks - page 4
Vendor:
Autodesk
Software:
Autodesk Infraworks
Software CPE:
cpe:2.3:a:autodesk:autodesk_infraworks:*:*:*:*:*:*:*:*
Website:
https://www.autodesk.com/
Total vulnerabilities:
88
Public exploits:
12
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2026.3
2026.2
2026.1
2026.0
2022.1.10.363
2023.1.5.251
2024.1.4.152
2025.02.86
2021.2 Hotfix 9
2023.1 Hotfix 1
2023.0.2
2023.0.1 Hotfix 1
2023.0.1
2022.1.5 Hotfix 5
2022.1.5
2021.2 Hotfix 7
2020.2 Hotfix 7
2022.1 Hotfix 4
2022.1 Hotfix 3
2022.1 Hotfix 1
2021.2 Hotfix 6
2021.2 Hotfix 5
2021.2 Hotfix 3
2021.2 Hotfix 2
2021.2 Hotfix 1
2020.2 Hotfix 6
2020.2 Hotfix 5
2020.2 Hotfix 3
2020.2 Hotfix 2
2020.2 Hotfix 1
2019.3 Hotfix 5
2020.2 Hotfix 4
2021.2 Hotfix 4
2022.0 Hotfix 3
2022.1 Hotfix 2
2019.3
2020.2
2021.2
2022.1
2022.0
Vulnerabilities (88)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU72076 - Incorrect Authorization CVE-2020-7692 |
CWE-863 | High | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 08.02.2023 |
SB2020070955 SB2023020889 SB2023022307 and 9 more |
||
| #VU64524 - Improper Neutralization of Special Elements used in an Expression Language Statement CVE-2022-22980 |
CWE-917 | High | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 21.06.2022 |
SB2022062101 SB2022112938 SB2023042635 and 2 more |
||
| #VU61952 - Memory corruption CVE-2022-25797 |
CWE-119 | High | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 07.04.2022 |
SB2022040706 SB2022042625 |
||
| #VU61951 - Out-of-bounds read CVE-2022-27524 |
CWE-125 | Medium | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 07.04.2022 |
SB2022040706 SB2022042625 |
||
| #VU61950 - Out-of-bounds read CVE-2022-27523 |
CWE-125 | Medium | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 07.04.2022 |
SB2022040706 SB2022042625 |
||
| #VU61810 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2021-43797 |
CWE-444 | Medium | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 02.04.2022 |
SB2021120923 SB2022040202 SB2022042223 and 49 more |
||
| #VU61799 - Out-of-bounds write CVE-2020-36518 |
CWE-787 | Medium | 2020.2 Hotfix 7, 2021.2 Hotfix 7, 2022.1.5 Hotfix 5, 2023.0.1 Hotfix 1 | 01.04.2022 |
SB2022040113 SB2022040114 SB2022040115 and 147 more |
||
| #VU60986 - Improper input validation CVE-2020-28491 |
CWE-20 | Medium | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 03.03.2022 |
SB2022030316 SB2022030322 SB2022062413 and 12 more |
||
| #VU56063 - Memory corruption CVE-2021-3711 |
CWE-119 | High | 2020.2 Hotfix 7, 2021.2 Hotfix 7, 2022.1.5 Hotfix 5, 2023.0.1 Hotfix 1 | 24.08.2021 |
SB2021082414 SB2021082508 SB2021082510 and 53 more |
||
| #VU55804 - Uncontrolled Search Path Element CVE-2021-36770 |
CWE-427 | Low | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 12.08.2021 |
SB2021081204 SB2021081205 SB2021092202 and 13 more |
||
| #VU54379 - Out-of-bounds write CVE-2021-27043 |
CWE-787 | High | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 24.06.2021 |
SB2021062412 SB2021062413 SB2021062414 and 9 more |
||
| #VU54378 - Memory corruption CVE-2021-27042 |
CWE-119 | High | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 24.06.2021 |
SB2021062412 SB2021062413 SB2021062414 and 9 more |
||
| #VU54377 - Memory corruption CVE-2021-27041 |
CWE-119 | High | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 24.06.2021 |
SB2021062412 SB2021062413 SB2021062414 and 11 more |
||
| #VU54376 - Out-of-bounds read CVE-2021-27040 |
CWE-125 | High | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 24.06.2021 |
SB2021062412 SB2021062413 SB2021062414 and 10 more |
||
| #VU51835 - Cleartext Storage of Sensitive Information CVE-2021-21290 |
CWE-312 | Low | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 01.04.2021 |
SB2021020813 SB2021040626 SB2021050706 and 42 more |
||
| #VU49739 - Improper input validation CVE-2020-5421 |
CWE-20 | Medium | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 20.01.2021 |
SB2021012002 SB2021012008 SB2021012015 and 39 more |
||
| #VU48175 - Improper input validation CVE-2020-27955 |
CWE-20 | High | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 05.11.2020 |
SB2020110606 SB2022042625 |
||
| #VU25355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2019-20444 |
CWE-444 | Medium | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 14.02.2020 |
SB2020012928 SB2020022601 SB2020031305 and 36 more |
||
| #VU25353 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2020-7238 |
CWE-444 | Medium | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 14.02.2020 |
SB2020021409 SB2020022521 SB2020022601 and 16 more |
||
| #VU22825 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2019-16869 |
CWE-444 | Medium | 2021.2 Hotfix 9, 2023.1 Hotfix 1 | 18.11.2019 |
SB2019092616 SB2019111903 SB2019112016 and 30 more |
Showing elements 61 - 80 out of 88