CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

autodesk

autocad_lt

77 known vulnerabilities · sorted by CVSS score

CVE-2023-29075
CRITICAL9.8

A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

autodesk / autocad+21
Network
Published Nov 23, 2023
Page 1 of 4
CVE-2023-29074
CRITICAL9.8

A maliciously crafted CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

autodesk / autocad+21
Network
Published Nov 23, 2023
CVE-2023-29076
CRITICAL9.8

A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause memory corruption vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

autodesk / autocad+21
Network
Published Nov 23, 2023
CVE-2023-29073
CRITICAL9.8

A maliciously crafted MODEL file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

autodesk / autocad+21
Network
Published Nov 23, 2023
CVE-2019-7364
HIGH7.8

DLL preloading vulnerability in versions 2017, 2018, 2019, and 2020 of Autodesk Advanced Steel, Civil 3D, AutoCAD, AutoCAD LT, AutoCAD Architecture, AutoCAD Electrical, AutoCAD Map 3D, AutoCAD Mechanical, AutoCAD MEP, AutoCAD Plant 3D and version 2017 of AutoCAD P&ID. An attacker may trick a user into opening a malicious DWG file that may leverage a DLL preloading vulnerability in AutoCAD which may result in code execution.

autodesk / advance_steel+40
Local
Published Aug 23, 2019
CVE-2022-25788
HIGH7.8

A maliciously crafted JT file in Autodesk AutoCAD 2022 may be used to write beyond the allocated buffer while parsing JT files. This vulnerability can be exploited to execute arbitrary code.

autodesk / advance_steel+12
Local
Published Apr 19, 2022
CVE-2021-27042
HIGH7.8

A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. The vulnerability exists because the application fails to handle a crafted DWG file, which causes an unhandled exception. An attacker can leverage this vulnerability to execute arbitrary code.

autodesk / advance_steel+39
Local
Published Jun 25, 2021
CVE-2022-27529
HIGH7.8

A maliciously crafted PICT, BMP, PSD or TIF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 may be used to write beyond the allocated buffer while parsing PICT, BMP, PSD or TIF file. This vulnerability may be exploited to execute arbitrary code.

autodesk / advance_steel+41
Local
Published Apr 18, 2022
CVE-2022-33890
HIGH7.8

A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

autodesk / autocad+26
Local
Published Oct 3, 2022
CVE-2022-25789
HIGH7.8

A maliciously crafted DWF, 3DS and DWFX files in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.

autodesk / advance_steel+40
Local
Published Apr 11, 2022
CVE-2022-42942
HIGH7.8

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

autodesk / autocad+52
Local
Published Oct 21, 2022
CVE-2022-41309
HIGH7.8

A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

autodesk / autocad+52
Local
Published Oct 21, 2022
CVE-2021-40162
HIGH7.8

A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.

autodesk / autocad+87
Local
Published Oct 7, 2022
CVE-2023-25004
HIGH7.8

A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution.

autodesk / alias+52
Local
Published Jun 27, 2023
CVE-2021-40164
HIGH7.8

A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.

autodesk / autocad+87
Local
Published Oct 7, 2022
CVE-2022-33888
HIGH7.8

A malicious crafted Dwg2Spd file when processed through Autodesk DWG application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

autodesk / autocad+19
Local
Published Oct 3, 2022
CVE-2021-40165
HIGH7.8

A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocated buffer while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.

autodesk / autocad+87
Local
Published Oct 7, 2022
CVE-2021-27041
HIGH7.8

A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. This vulnerability can be exploited to execute arbitrary code

autodesk / advance_steel+46
Local
Published Jun 25, 2021
CVE-2022-33887
HIGH7.8

A maliciously crafted PDF file when parsed through Autodesk AutoCAD 2023 causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code in the context of the current process.

autodesk / autocad+19
Local
Published Oct 3, 2022
CVE-2022-42940
HIGH7.8

A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

autodesk / autocad+52
Local
Published Oct 21, 2022