Autodesk ID: ADSK-SA-2021-0005
Product, Service, Component: Autodesk® InfraWorks
Impact: Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion'), NULL Pointer Dereference, Exposure of Sensitive Information to an Unauthorized Actor, Use of Insufficiently Random Values, Missing Encryption of Sensitive Data, Improper Certificate Validation, Double Free, Out-of-bounds Write, Improper Link Resolution Before File Access ('Link Following'), Integer Overflow or Wraparound, Excessive Iteration, Divide By Zero, Out-of-bounds Read, Use After Free
Severity: High
Original Publish: 18/06/2021
Last Revised: 18/06/2021