Vulnerabilities > Novell > Iprint Client > 4.36

DATE CVE VULNERABILITY TITLE RISK
2008-09-05 CVE-2008-2436 Code Injection vulnerability in Novell Iprint Client
Multiple heap-based buffer overflows in the IppCreateServerRef function in nipplib.dll in Novell iPrint Client 4.x before 4.38 and 5.x before 5.08 allow remote attackers to execute arbitrary code via a long argument to the (1) GetPrinterURLList, (2) GetPrinterURLList2, or (3) GetFileList2 function in the Novell iPrint ActiveX control in ienipp.ocx.
network
novell CWE-94
critical
9.3