CVE-2008-0935
Novell iPrint Client < 4.34 - Stack-Based Buffer Overflow via ExecuteRequest Method
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-0935.
PoCs published by Metasploit, MC, including Metasploit module exploits/windows/browser/novelliprint_executerequest.
AI-analyzed exploit summary This exploit targets a stack buffer overflow in Novell iPrint Client 4.26 via the ExecuteRequest() method in ienipp.ocx. It delivers a malicious HTML page with obfuscated JavaScript to trigger the vulnerability and execute arbitrary code.
Description
Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a long argument to the ExecuteRequest method.
Exploits (2)
This exploit targets a stack buffer overflow in Novell iPrint Client 4.26 via the ExecuteRequest() method in ienipp.ocx. It delivers a malicious HTML page with obfuscated JavaScript to trigger the vulnerability and execute arbitrary code.
This Metasploit module exploits a stack buffer overflow in Novell iPrint Client 4.26 via an overly long string passed to the ExecuteRequest() method of the ienipp.ocx ActiveX control, allowing arbitrary code execution.