VendorsAutodeskdwg_trueviewall versions
Vulnerabilities

Autodesk Dwg Trueview

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

27CVEs
CVE-2022-25797
A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while parsing PDF files. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception.
Published 2022-04-13 · Modified
7.8EPSS 0.012
CVE-2021-40164
A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
Published 2022-10-07 · Modified
7.8EPSS 0.009
CVE-2021-40162
A maliciously crafted TIF, PICT, TGA, or RLC files in Autodesk Image Processing component may be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
Published 2022-10-07 · Modified
7.8EPSS 0.009
CVE-2021-40163
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through Autodesk Image Processing component.
Published 2022-10-07 · Modified
7.8EPSS 0.009
CVE-2021-40165
A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocated buffer while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
Published 2022-10-07 · Modified
7.8EPSS 0.009
CVE-2021-40166
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has already been freed while parsing them. This vulnerability may be exploited by attackers to execute arbitrary code.
Published 2022-10-07 · Modified
7.8EPSS 0.009
CVE-2021-27043
An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application to write in unexpected paths. In order to exploit this the attacker would need the victim to enable full page heap in the application.
Published 2021-06-25 · Modified
7.8EPSS 0.009
CVE-2024-23138
Stack-based Overflow Vulnerability in the TrueViewTM Desktop Software
Published 2024-03-17 · Analyzed
7.8EPSS 0.005
CVE-2025-1275
JPG File Parsing Heap-Based Overflow Vulnerability
Published 2025-04-15 · Modified
7.8EPSS 0.004
CVE-2025-1276
DWG File Parsing Out-of-Bounds Write Vulnerability
Published 2025-04-15 · Modified
7.8EPSS 0.003
CVE-2026-16463
DXF File Parsing Heap-Based Overflow in Autodesk AutoCAD
Published 2026-07-29 · Analyzed
7.8EPSS 0.003
CVE-2022-42945
DWG TrueViewTM 2023 version has a DLL Search Order Hijacking vulnerability. Successful exploitation by a malicious attacker could result in remote code execution on the target system.
Published 2022-12-19 · Modified
7.8EPSS 0.003
CVE-2024-7992
Autodesk AutoCAD DWG Stack-Based Buffer Overflow Code Execution Vulnerability
Published 2024-10-29 · Modified
7.8EPSS 0.002
CVE-2024-9489
Autodesk AutoCAD DWG File Parsing Memory Corruption Code Execution Vulnerability
Published 2024-10-29 · Analyzed
7.8EPSS 0.002
CVE-2024-9996
Autodesk AutoCAD DWG File Parsing Out-Of-Bounds Write Code Execution Vulnerability
Published 2024-10-29 · Modified
7.8EPSS 0.002
CVE-2024-9997
Autodesk AutoCAD DWG File Parsing Memory Corruption Code Execution Vulnerability
Published 2024-10-29 · Modified
7.8EPSS 0.002
CVE-2024-7305
DWF Vulnerability in Autodesk Desktop Software
Published 2024-08-19 · Analyzed
7.8EPSS 0.002
CVE-2024-8896
Autodesk AutoCAD DXF File Parsing Unitialized Variable Code Execution Vulnerability
Published 2024-10-29 · Analyzed
7.8EPSS 0.002
CVE-2026-7406
BMP File Parsing Untrusted Pointer Dereference in certain Autodesk products
Published 2026-08-06 · Analyzed
7.8EPSS 0.002
CVE-2024-7991
Autodesk AutoCAD DWG Out-of-Bounds Write Code Execution Vulnerability
Published 2024-10-29 · Modified
7.8EPSS 0.002
CVE-2022-27524
An out-of-bounds read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Input. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Published 2022-04-13 · Modified
7.1EPSS 0.014
CVE-2022-27523
A buffer over-read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Input. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Published 2022-04-13 · Modified
7.1EPSS 0.014
CVE-2026-16465
DWG or DXF File Parsing Out-of-Bounds Read in Autodesk AutoCAD
Published 2026-07-29 · Analyzed
7.1EPSS 0.003
CVE-2013-3665
Unspecified vulnerability in Autodesk AutoCAD through 2014, AutoCAD LT through 2014, and DWG TrueView through 2014 allows remote attackers to execute arbitrary code via a crafted DWG file.
Published 2013-07-18 · Modified
6.8EPSS 0.027
CVE-2026-17550
DWG or DXF File Parsing Out-of-Bounds Read in Autodesk AutoCAD
Published 2026-07-29 · Analyzed
5.5EPSS 0.003
CVE-2026-7405
TIF File Parsing Out-of-Bounds Read in certain Autodesk products
Published 2026-08-06 · Analyzed
5.5EPSS 0.002
CVE-2021-27040
A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnerability can be exploited to execute arbitrary code.
Published 2021-06-25 · Modified
4.3EPSS 0.027