This page lists publicly disclosed CVE vulnerabilities affecting autodesk navisworks (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-1660 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.18% | 2025-04-01 | 2026-06-17 |
| CVE-2025-1659 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.18% | 2025-04-01 | 2026-06-17 |
| CVE-2025-1658 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.18% | 2025-04-01 | 2026-06-17 |
| CVE-2024-12671 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.34% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12670 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.33% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12669 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.30% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12200 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.32% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12199 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.25% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12198 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.48% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12197 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.26% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12194 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.25% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12193 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.26% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12192 | A maliciously crafted DWF file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.26% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12191 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.26% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12179 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.33% | 2024-12-17 | 2026-06-17 |
| CVE-2024-12178 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.33% | 2024-12-17 | 2026-06-17 |
| CVE-2024-11422 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.37% | 2024-12-17 | 2026-06-17 |
| CVE-2024-7675 | A maliciously crafted DWF file, when parsed in w3dtk.dll through Autodesk Navisworks, can force a Use-After-Free. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.21% | 2024-09-30 | 2026-06-17 |
| CVE-2024-7674 | A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.23% | 2024-09-30 | 2026-06-17 |
| CVE-2024-7673 | A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process. | [email protected] | 7.8 | 0.23% | 2024-09-30 | 2026-06-17 |