Known vulnerabilities in Autodesk Infraworks - page 5
Vendor:
Autodesk
Software:
Autodesk Infraworks
Software CPE:
cpe:2.3:a:autodesk:autodesk_infraworks:*:*:*:*:*:*:*:*
Website:
https://www.autodesk.com/
Total vulnerabilities:
88
Public exploits:
12
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2026.3
2026.2
2026.1
2026.0
2022.1.10.363
2023.1.5.251
2024.1.4.152
2025.02.86
2021.2 Hotfix 9
2023.1 Hotfix 1
2023.0.2
2023.0.1 Hotfix 1
2023.0.1
2022.1.5 Hotfix 5
2022.1.5
2021.2 Hotfix 7
2020.2 Hotfix 7
2022.1 Hotfix 4
2022.1 Hotfix 3
2022.1 Hotfix 1
2021.2 Hotfix 6
2021.2 Hotfix 5
2021.2 Hotfix 3
2021.2 Hotfix 2
2021.2 Hotfix 1
2020.2 Hotfix 6
2020.2 Hotfix 5
2020.2 Hotfix 3
2020.2 Hotfix 2
2020.2 Hotfix 1
2019.3 Hotfix 5
2020.2 Hotfix 4
2021.2 Hotfix 4
2022.0 Hotfix 3
2022.1 Hotfix 2
2019.3
2020.2
2021.2
2022.1
2022.0
Vulnerabilities (88)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU61953 - Memory corruption CVE-2022-25795 |
CWE-119 | Medium | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 07.04.2022 |
SB2022040706 SB2022042625 |
||
| #VU58751 - Out-of-bounds read CVE-2021-40160 |
CWE-125 | Low | 2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 | 09.12.2021 |
SB2021120904 SB2021120916 SB2022042625 |
||
| #VU56896 - Out-of-bounds write CVE-2021-40156 |
CWE-787 | High | 2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 | 27.09.2021 |
SB2021092712 SB2022012403 |
||
| #VU56893 - Out-of-bounds read CVE-2021-40155 |
CWE-125 | Low | 2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 | 27.09.2021 |
SB2021092712 SB2022012403 |
||
| #VU52252 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-29425 |
CWE-22 | Low | 2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 | 15.04.2021 |
SB2021041510 SB2021081922 SB2021093016 and 121 more |
||
| #VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2020-11023 |
CWE-79 | Low | 2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 | 05.05.2020 |
SB2020042126 SB2020052033 SB2020052103 and 180 more |
||
| #VU27052 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2020-11022 |
CWE-79 | Low | 2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 | 21.04.2020 |
SB2020042126 SB2020052033 SB2020052103 and 181 more |
||
| #VU18092 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\') CVE-2019-11358 |
CWE-1321 | Low | 2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 | 28.03.2019 |
SB2019032804 SB2019041026 SB2019041801 and 155 more |
Showing elements 81 - 100 out of 88