{"api_version":"1","generated_at":"2026-07-23T07:37:10+00:00","cve":"CVE-2008-4471","urls":{"html":"https://cve.report/CVE-2008-4471","api":"https://cve.report/api/cve/CVE-2008-4471.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2008-4471","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2008-4471"},"summary":{"title":"CVE-2008-4471","description":"Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Revit Architecture 2009 SP2 and Autodesk Design Review 2009, allows remote attackers to overwrite arbitrary files via \"..\\\" sequences in the argument to the SaveAS method.","state":"PUBLISHED","assigner":"mitre","published_at":"2008-10-07 20:00:17","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-22","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/31989","name":"http://secunia.com/advisories/31989","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Autodesk Design Review DWF Viewer ActiveX Control \"SaveAs()\" Insecure Method - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/45519","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/45519","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/496847/100/0/threaded","name":"http://www.securityfocus.com/archive/1/496847/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://retrogod.altervista.org/9sg_autodesk_revit_arch_2009_exploit.html","name":"http://retrogod.altervista.org/9sg_autodesk_revit_arch_2009_exploit.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Autodesk DWF Viewer Control / LiveUpdate Module remote code execution exploit","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"https://www.exploit-db.com/exploits/6630","name":"https://www.exploit-db.com/exploits/6630","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Autodesk DWF Viewer Control / LiveUpdate Module - Remote Code Execution - Windows remote Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/31487","name":"http://www.securityfocus.com/bid/31487","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Autodesk DWF Viewer Control 'AdView.dll' Arbitrary File Download Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://securityreason.com/securityalert/4361","name":"http://securityreason.com/securityalert/4361","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"CXSecurity - IDS","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2008/2704","name":"http://www.vupen.com/english/advisories/2008/2704","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2008-4471","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2008-4471","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2008","cve_id":"4471","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"autodesk","cpe5":"design_review","cpe6":"2009","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"4471","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"autodesk","cpe5":"dwf_viewer","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"4471","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"autodesk","cpe5":"revit_architecture","cpe6":"2009","cpe7":"sp2","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T10:17:09.698Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"6630","tags":["exploit","x_refsource_EXPLOIT-DB","x_transferred"],"url":"https://www.exploit-db.com/exploits/6630"},{"name":"4361","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/4361"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://retrogod.altervista.org/9sg_autodesk_revit_arch_2009_exploit.html"},{"name":"designreview-adview-file-overwrite(45519)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/45519"},{"name":"31487","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/31487"},{"name":"ADV-2008-2704","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2008/2704"},{"name":"20080930 Autodesk DWF Viewer Control / LiveUpdate Module remote code execution exploit","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/496847/100/0/threaded"},{"name":"31989","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/31989"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2008-09-30T00:00:00.000Z","descriptions":[{"lang":"en","value":"Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Revit Architecture 2009 SP2 and Autodesk Design Review 2009, allows remote attackers to overwrite arbitrary files via \"..\\\" sequences in the argument to the SaveAS method."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-11T19:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"6630","tags":["exploit","x_refsource_EXPLOIT-DB"],"url":"https://www.exploit-db.com/exploits/6630"},{"name":"4361","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/4361"},{"tags":["x_refsource_MISC"],"url":"http://retrogod.altervista.org/9sg_autodesk_revit_arch_2009_exploit.html"},{"name":"designreview-adview-file-overwrite(45519)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/45519"},{"name":"31487","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/31487"},{"name":"ADV-2008-2704","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2008/2704"},{"name":"20080930 Autodesk DWF Viewer Control / LiveUpdate Module remote code execution exploit","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/496847/100/0/threaded"},{"name":"31989","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/31989"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2008-4471","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Revit Architecture 2009 SP2 and Autodesk Design Review 2009, allows remote attackers to overwrite arbitrary files via \"..\\\" sequences in the argument to the SaveAS method."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"6630","refsource":"EXPLOIT-DB","url":"https://www.exploit-db.com/exploits/6630"},{"name":"4361","refsource":"SREASON","url":"http://securityreason.com/securityalert/4361"},{"name":"http://retrogod.altervista.org/9sg_autodesk_revit_arch_2009_exploit.html","refsource":"MISC","url":"http://retrogod.altervista.org/9sg_autodesk_revit_arch_2009_exploit.html"},{"name":"designreview-adview-file-overwrite(45519)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/45519"},{"name":"31487","refsource":"BID","url":"http://www.securityfocus.com/bid/31487"},{"name":"ADV-2008-2704","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2008/2704"},{"name":"20080930 Autodesk DWF Viewer Control / LiveUpdate Module remote code execution exploit","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/496847/100/0/threaded"},{"name":"31989","refsource":"SECUNIA","url":"http://secunia.com/advisories/31989"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2008-4471","datePublished":"2008-10-07T18:27:00.000Z","dateReserved":"2008-10-07T00:00:00.000Z","dateUpdated":"2024-08-07T10:17:09.698Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2008-10-07 20:00:17","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-22","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:autodesk:design_review:2009:*:*:*:*:*:*:*","matchCriteriaId":"D015F7C3-BBFB-418C-8B50-2047AE1E142E"},{"vulnerable":true,"criteria":"cpe:2.3:a:autodesk:dwf_viewer:*:*:*:*:*:*:*:*","matchCriteriaId":"9E11496F-A4A3-48B2-BFD4-D00D13BD9E2B"},{"vulnerable":true,"criteria":"cpe:2.3:a:autodesk:revit_architecture:2009:sp2:*:*:*:*:*:*","matchCriteriaId":"877A0489-AC5E-4A8C-827B-EDD6EF62E0BD"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2008","CveId":"4471","Ordinal":"1","Title":"CVE-2008-4471","CVE":"CVE-2008-4471","Year":"2008"},"notes":[{"CveYear":"2008","CveId":"4471","Ordinal":"1","NoteData":"Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Revit Architecture 2009 SP2 and Autodesk Design Review 2009, allows remote attackers to overwrite arbitrary files via \"..\\\" sequences in the argument to the SaveAS method.","Type":"Description","Title":"CVE-2008-4471"},{"CveYear":"2008","CveId":"4471","Ordinal":"2","NoteData":"2008-10-07","Type":"Other","Title":"Published"},{"CveYear":"2008","CveId":"4471","Ordinal":"3","NoteData":"2018-10-11","Type":"Other","Title":"Modified"}]}}}