CVE-2008-4471: Path Traversal
Directory traversal vulnerability in the CExpressViewerControl class in the DWF Viewer ActiveX control (AdView.dll 9.0.0.96), as used in Revit Architecture 2009 SP2 and Autodesk Design Review 2009, allows remote attackers to overwrite arbitrary files via "..\" sequences in the argument to the SaveAS method.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-4471?
CVE-2008-4471 is considered a critical vulnerability due to its potential to allow remote attackers to overwrite arbitrary files.
How do I fix CVE-2008-4471?
To mitigate CVE-2008-4471, users should update to the latest versions or patches provided by Autodesk for their software.
Which software is affected by CVE-2008-4471?
CVE-2008-4471 affects Autodesk Design Review 2009 and Autodesk Revit Architecture 2009 SP2.
What type of vulnerability is CVE-2008-4471?
CVE-2008-4471 is classified as a directory traversal vulnerability.
Can CVE-2008-4471 be exploited remotely?
Yes, CVE-2008-4471 can be exploited remotely by sending specially crafted inputs to the affected ActiveX control.