vulnerability

AutoDesk AutoCAD: CVE-2022-25790: Autodesk® AutoCAD®, Advance Steel and Civil 3D, Navisworks®

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Feb 28, 2022
Added
Jul 22, 2025
Modified
Jul 28, 2025

Description

A maliciously crafted DWF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022, 2020, and 2019 can be used to write beyond the allocated boundaries when parsing the DWF files. Exploitation of this vulnerability may lead to code execution.

Solution

autodesk-autocad-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.