Vulnerabilities > Novell > Iprint > 5.30

DATE CVE VULNERABILITY TITLE RISK
2010-08-23 CVE-2010-3106 Improper Input Validation vulnerability in Novell Iprint
The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the debug parameter, which allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a parameter value with a crafted length, related to the ExecuteRequest method.
network
novell CWE-20
critical
9.3
2010-08-23 CVE-2010-3105 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
The PluginGetDriverFile function in Novell iPrint Client before 5.44 interprets an uninitialized memory location as a pointer value, which allows remote attackers to execute arbitrary code via unspecified vectors.
network
novell CWE-119
critical
9.3
2010-08-23 CVE-2010-1527 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Stack-based buffer overflow in Novell iPrint Client before 5.44 allows remote attackers to execute arbitrary code via a long call-back-url parameter in an op-client-interface-version action.
network
novell CWE-119
critical
9.3
2009-12-08 CVE-2009-1569 Buffer Errors vulnerability in Novell Iprint 4.38/5.30
Multiple stack-based buffer overflows in Novell iPrint Client 4.38, 5.30, and possibly other versions before 5.32 allow remote attackers to execute arbitrary code via vectors related to (1) Date and (2) Time.
network
novell CWE-119
critical
9.3