Vulnerabilities > Cyan Soft > Cyanprintip Professional

DATE CVE VULNERABILITY TITLE RISK
2008-02-13 CVE-2008-0756 Applications Format String Vulnerability and Denial of Service vulnerability in cyan soft
The LPD server in cyan soft Opium OPI Server 4.10.1028 and earlier; cyanPrintIP Easy OPI, Professional, and Basic 4.10.1030 and earlier; Workstation 4.10.836 and earlier; and Standard 4.10.940 and earlier; allows remote attackers to cause a denial of service (daemon crash) via a connection that begins with (1) a "Send queue state" LPD command 3 or (2) a "Send queue state" LPD command 4.
network
low complexity
cyan-soft
5.0
2008-02-13 CVE-2008-0755 USE of Externally-Controlled Format String vulnerability in Cyan Soft products
Format string vulnerability in the ReportSysLogEvent function in the LPD server in cyan soft Opium OPI Server 4.10.1028 and earlier; cyanPrintIP Easy OPI, Professional, and Basic 4.10.1030 and earlier; Workstation 4.10.836 and earlier; and Standard 4.10.940 and earlier; might allow remote attackers to execute arbitrary code via format string specifiers in the queue name in a request.
network
low complexity
cyan-soft CWE-134
7.5