Autodesk Navisworks是美国Autodesk公司的用于建筑、工程和施工的 3D 模型审查软件。 Autodesk Navisworks 2025版本存在缓冲区错误漏洞,该漏洞源于恶意制作的DWFX文件可能会引发基于堆的缓冲区溢出,攻击者可以利用此漏洞导致崩溃或在当前进程的上下文中执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Autodesk | Navisworks Freedom | 2025 ~ 2025.3 |
cpe:2.3:a:autodesk:navisworks_freedom:2025:*:*:*:*:*:*:*
|
|
| Autodesk | Navisworks Simulate | 2025 ~ 2025.3 |
cpe:2.3:a:autodesk:navisworks_simulate:2025:*:*:*:*:*:*:*
|
|
| Autodesk | Navisworks Manage | 2025 ~ 2025.3 |
cpe:2.3:a:autodesk:navisworks_manage:2025:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-7670 | 7.8 HIGH | DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software |
| CVE-2024-7671 | 7.8 HIGH | DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software |
| CVE-2024-7672 | 7.8 HIGH | DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software |
| CVE-2024-7674 | 7.8 HIGH | DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software |
| CVE-2024-7675 | 7.8 HIGH | DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software |
No comments yet