CVE-2008-2908
Multiple stack-based buffer overflows in a certain ActiveX control in ienipp.ocx in Novell iPrint Client for Windows before 4.36 allow remote attackers to execute arbitrary code via a long value of the (1) operation, (2) printer-url, or (3) target-frame parameter. NOTE: some of these details are obtained from third party information.
- Affected products
- Activex, Novell Iprint Client, Windows
- Novell Iprint Client
- ≤ 4.35
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 35.4% (98th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2008-06-30
CVE-2008-2908 at NVD
7 known exploits for CVE-2008-2908
Proof-of-concept code and exploit modules indexed by Sploitus
Novell iPrint Client ActiveX Control Buffer Overflow
Novell iPrint Client ienipp.ocx ActiveX control buffer overflow
Novell iPrint Client ienipp.ocx ActiveX control buffer overflow
Novell iPrint Client ienipp.ocx ActiveX control buffer overflow
Novell iPrint Client ienipp.ocx ActiveX control buffer overflow
Novell iPrint Client ActiveX Control Buffer Overflow
Novell iPrint Client - ActiveX Control Buffer Overflow (Metasploit)