Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2008-0935

CWE-119Buffer Overflow5 documents4 sources
Severity
10.0CRITICAL
EPSS
82.9%
top 0.75%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedFeb 25
Latest updateMay 1

Description

Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a long argument to the ExecuteRequest method.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

NVDnovell/iprint_client4.26, 4.32+1
NVDnovell/iprint4.32

Patches

🔴Vulnerability Details

2
GHSA
GHSA-gc8w-mw8v-8fmc: Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp2022-05-01
CVEList
CVE-2008-0935: Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp2008-02-25

💥Exploits & PoCs

2
Exploit-DB
ARYADAD - Multiple Vulnerabilities2012-01-21
Exploit-DB
Novell iPrint Client - ActiveX Control ExecuteRequest Buffer Overflow (Metasploit)2010-09-21
CVE-2008-0935 (CRITICAL CVSS 10) | Stack-based buffer overflow in the | cvebase.io