Novell iPrint Client for Windows ienipp.ocx ActiveX Multiple Variable Overflow

high Nessus Plugin ID 33227

Synopsis

The remote host contains an application that is affected by an unspecified vulnerability.

Description

The remote host has Novell iPrint Client installed.

The installed version of Novell iPrint is affected by an unspecified vulnerability.

Solution

Upgrade to Novell iPrint Client 4.36.

See Also

http://www.nessus.org/u?57976ae6

Plugin Details

Severity: High

ID: 33227

File Name: novell_iprint_vuln.nasl

Version: 1.13

Type: local

Agent: windows

Family: Windows

Published: 6/20/2008

Updated: 7/16/2018

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: High

Base Score: 7.2

Temporal Score: 6

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/a:novell:iprint

Required KB Items: SMB/Registry/Enumerated

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 6/12/2008

Exploitable With

Core Impact

Metasploit (Novell iPrint Client ActiveX Control Buffer Overflow)

Reference Information

CVE: CVE-2008-2908

BID: 29736

CWE: 119