Known vulnerabilities in Autodesk Infraworks - page 5

Vendor: Autodesk
Software CPE: cpe:2.3:a:autodesk:autodesk_infraworks:*:*:*:*:*:*:*:*
Total vulnerabilities: 88
Public exploits: 12
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Autodesk Infraworks Autodesk Infraworks is affected by 88 known vulnerabilities: 1 critical, 26 high, 37 medium, 24 low Critical High Medium Low

Vulnerabilities (88)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61953 - Memory corruption
CVE-2022-25795
CWE-119 Medium
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 07.04.2022 SB2022040706
SB2022042625
#VU58751 - Out-of-bounds read
CVE-2021-40160
CWE-125 Low
No
No
2020.2 Hotfix 6, 2021.2 Hotfix 6, 2022.1 Hotfix 4 09.12.2021 SB2021120904
SB2021120916
SB2022042625
#VU56896 - Out-of-bounds write
CVE-2021-40156
CWE-787 High
No
No
2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 27.09.2021 SB2021092712
SB2022012403
#VU56893 - Out-of-bounds read
CVE-2021-40155
CWE-125 Low
No
No
2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 27.09.2021 SB2021092712
SB2022012403
#VU52252 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-29425
CWE-22 Low
No
No
2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 15.04.2021 SB2021041510
SB2021081922
SB2021093016
and 121 more
#VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11023
CWE-79 Low
Available
Exploited
2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 05.05.2020 SB2020042126
SB2020052033
SB2020052103
and 180 more
#VU27052 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11022
CWE-79 Low
Available
No
2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 21.04.2020 SB2020042126
SB2020052033
SB2020052103
and 181 more
#VU18092 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2019-11358
CWE-1321 Low
Available
No
2019.3 Hotfix 5, 2020.2 Hotfix 4, 2021.2 Hotfix 4, 2022.0 Hotfix 3, 2022.1 Hotfix 2 28.03.2019 SB2019032804
SB2019041026
SB2019041801
and 155 more


Showing elements 81 - 100 out of 88