PT-2008-5705 · Autodesk · Autodesk Design Review+2

Nine:Situations:Group

·

Published

2008-10-07

·

Updated

2018-10-11

·

CVE-2008-4471

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Autodesk Design Review version 2009 Revit Architecture version 2009 SP2 DWF Viewer ActiveX control (AdView.dll) version 9.0.0.96
Description: A directory traversal issue exists in the CExpressViewerControl class, allowing remote attackers to overwrite arbitrary files by using ".." sequences in the argument to the SaveAS method.
Recommendations: For Autodesk Design Review version 2009, update to a version that fixes this issue. For Revit Architecture version 2009 SP2, update to a version that fixes this issue. For DWF Viewer ActiveX control (AdView.dll) version 9.0.0.96, update to a version that fixes this issue. As a temporary workaround, consider restricting access to the SaveAS method until a patch is available.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-4471

Affected Products

Autodesk Design Review
Dwf Viewer Activex Control
Revit Architecture