{"api_version":"1","generated_at":"2026-07-23T06:21:16+00:00","cve":"CVE-2008-2463","urls":{"html":"https://cve.report/CVE-2008-2463","api":"https://cve.report/api/cve/CVE-2008-2463.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2008-2463","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2008-2463"},"summary":{"title":"CVE-2008-2463","description":"The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and Microsoft Office Access 2000 through 2003, allows remote attackers to download arbitrary files to a client machine via a crafted HTML document or e-mail message, probably involving use of the SnapshotPath and CompressedPath properties and the PrintSnapshot method. NOTE: this can be leveraged for code execution by writing to a Startup folder.","state":"PUBLISHED","assigner":"certcc","published_at":"2008-07-07 23:41:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-94","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6.8","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.vupen.com/english/advisories/2008/2012/references","name":"http://www.vupen.com/english/advisories/2008/2012/references","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/43613","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/43613","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/837785","name":"http://www.kb.cert.org/vuls/id/837785","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"VU#837785 - Microsoft Office Snapshot Viewer ActiveX control race condition","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6120","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6120","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2","name":"http://marc.info/?l=bugtraq&m=121915960406986&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/30883","name":"http://secunia.com/advisories/30883","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Microsoft Access Snapshot Viewer ActiveX Control Vulnerability - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA08-225A.html","name":"http://www.us-cert.gov/cas/techalerts/TA08-225A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA08-225A -- Microsoft Updates for Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.microsoft.com/technet/security/advisory/955179.mspx","name":"http://www.microsoft.com/technet/security/advisory/955179.mspx","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Your request has been blocked. This could be\r\n                        due to several reasons.","mime":"text/html","httpstatus":"403","archivestatus":"200"},{"url":"http://www.exploit-db.com/exploits/6124","name":"http://www.exploit-db.com/exploits/6124","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Microsoft Access (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1020433","name":"http://www.securitytracker.com/id?1020433","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Microsoft Access Snapshot Viewer ActiveX Control Lets Remote Users Download Files to Arbitrary Locations","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/30114","name":"http://www.securityfocus.com/bid/30114","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Snapshot Viewer for Microsoft Access ActiveX Control Arbitrary File Download Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.us-cert.gov/cas/techalerts/TA08-189A.html","name":"http://www.us-cert.gov/cas/techalerts/TA08-189A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA08-189A -- Microsoft Office Snapshot Viewer ActiveX Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2008-2463","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2008-2463","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2008","cve_id":"2463","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"microsoft","cpe5":"office_snapshot_viewer_activex","cpe6":"office2000","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"2463","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"microsoft","cpe5":"office_snapshot_viewer_activex","cpe6":"office_2003","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"2463","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"microsoft","cpe5":"office_snapshot_viewer_activex","cpe6":"office_xp","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T09:05:28.335Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"TA08-189A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA08-189A.html"},{"name":"6124","tags":["exploit","x_refsource_EXPLOIT-DB","x_transferred"],"url":"http://www.exploit-db.com/exploits/6124"},{"name":"TA08-225A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA08-225A.html"},{"name":"ADV-2008-2012","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2008/2012/references"},{"name":"HPSBST02360","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.microsoft.com/technet/security/advisory/955179.mspx"},{"name":"SSRT080117","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2"},{"name":"VU#837785","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/837785"},{"name":"30883","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/30883"},{"name":"oval:org.mitre.oval:def:6120","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6120"},{"name":"microsoft-snapshotviewer-code-execution(43613)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/43613"},{"name":"30114","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/30114"},{"name":"1020433","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1020433"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2008-07-07T00:00:00.000Z","descriptions":[{"lang":"en","value":"The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and Microsoft Office Access 2000 through 2003, allows remote attackers to download arbitrary files to a client machine via a crafted HTML document or e-mail message, probably involving use of the SnapshotPath and CompressedPath properties and the PrintSnapshot method. NOTE: this can be leveraged for code execution by writing to a Startup folder."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-09-28T12:57:01.000Z","orgId":"37e5125f-f79b-445b-8fad-9564f167944b","shortName":"certcc"},"references":[{"name":"TA08-189A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA08-189A.html"},{"name":"6124","tags":["exploit","x_refsource_EXPLOIT-DB"],"url":"http://www.exploit-db.com/exploits/6124"},{"name":"TA08-225A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA08-225A.html"},{"name":"ADV-2008-2012","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2008/2012/references"},{"name":"HPSBST02360","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.microsoft.com/technet/security/advisory/955179.mspx"},{"name":"SSRT080117","tags":["vendor-advisory","x_refsource_HP"],"url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2"},{"name":"VU#837785","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/837785"},{"name":"30883","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/30883"},{"name":"oval:org.mitre.oval:def:6120","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6120"},{"name":"microsoft-snapshotviewer-code-execution(43613)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/43613"},{"name":"30114","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/30114"},{"name":"1020433","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1020433"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cert@cert.org","ID":"CVE-2008-2463","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and Microsoft Office Access 2000 through 2003, allows remote attackers to download arbitrary files to a client machine via a crafted HTML document or e-mail message, probably involving use of the SnapshotPath and CompressedPath properties and the PrintSnapshot method. NOTE: this can be leveraged for code execution by writing to a Startup folder."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"TA08-189A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA08-189A.html"},{"name":"6124","refsource":"EXPLOIT-DB","url":"http://www.exploit-db.com/exploits/6124"},{"name":"TA08-225A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA08-225A.html"},{"name":"ADV-2008-2012","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2008/2012/references"},{"name":"HPSBST02360","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2"},{"name":"http://www.microsoft.com/technet/security/advisory/955179.mspx","refsource":"CONFIRM","url":"http://www.microsoft.com/technet/security/advisory/955179.mspx"},{"name":"SSRT080117","refsource":"HP","url":"http://marc.info/?l=bugtraq&m=121915960406986&w=2"},{"name":"VU#837785","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/837785"},{"name":"30883","refsource":"SECUNIA","url":"http://secunia.com/advisories/30883"},{"name":"oval:org.mitre.oval:def:6120","refsource":"OVAL","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6120"},{"name":"microsoft-snapshotviewer-code-execution(43613)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/43613"},{"name":"30114","refsource":"BID","url":"http://www.securityfocus.com/bid/30114"},{"name":"1020433","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1020433"}]}}}},"cveMetadata":{"assignerOrgId":"37e5125f-f79b-445b-8fad-9564f167944b","assignerShortName":"certcc","cveId":"CVE-2008-2463","datePublished":"2008-07-07T23:00:00.000Z","dateReserved":"2008-05-28T00:00:00.000Z","dateUpdated":"2024-08-07T09:05:28.335Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2008-07-07 23:41:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-94","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office_snapshot_viewer_activex:office_2003:*:*:*:*:*:*:*","matchCriteriaId":"C2AA6000-5E18-4F7A-8B06-9B7505675262"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office_snapshot_viewer_activex:office_xp:*:*:*:*:*:*:*","matchCriteriaId":"B3353323-E1FF-4167-8DE8-EB3CD66AF721"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:office_snapshot_viewer_activex:office2000:*:*:*:*:*:*:*","matchCriteriaId":"7A067607-DFCE-44A7-91B9-E5EAF98CB5AF"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2008","CveId":"2463","Ordinal":"1","Title":"CVE-2008-2463","CVE":"CVE-2008-2463","Year":"2008"},"notes":[{"CveYear":"2008","CveId":"2463","Ordinal":"1","NoteData":"The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and Microsoft Office Access 2000 through 2003, allows remote attackers to download arbitrary files to a client machine via a crafted HTML document or e-mail message, probably involving use of the SnapshotPath and CompressedPath properties and the PrintSnapshot method. NOTE: this can be leveraged for code execution by writing to a Startup folder.","Type":"Description","Title":"CVE-2008-2463"},{"CveYear":"2008","CveId":"2463","Ordinal":"2","NoteData":"2008-07-07","Type":"Other","Title":"Published"},{"CveYear":"2008","CveId":"2463","Ordinal":"3","NoteData":"2017-09-28","Type":"Other","Title":"Modified"}]}}}