CVE-2022-27528

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
11/04/2022
Last modified:
19/04/2022

Description

A maliciously crafted DWFX and SKP files in Autodesk Navisworks 2022 can be used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:autodesk:navisworks:*:*:*:*:*:*:*:* 2022 (including) 2022.2 (excluding)


References to Advisories, Solutions, and Tools