CVE-2008-0935 is a critical stack-based buffer overflow vulnerability affecting the Novell iPrint Control ActiveX control within Novell iPrint Client versions prior to 4.34. With a maximum CVSS score of 10.0, this flaw allows unauthenticated remote attackers to execute arbitrary code by sending a long argument to the ExecuteRequest method. Although there is no recent media coverage or listing in the CISA Known Exploited Vulnerabilities catalog, the vulnerability presents a significant risk due to a high EPSS score and the availability of functional exploit modules in frameworks like Metasploit.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.32CPE matchmatch criteria | cpe:2.3:a:novell:iprint:*:*:*:*:*:*:*:* | ||
4.26CPE matchmatch criteria | cpe:2.3:a:novell:iprint_client:4.26:*:*:*:*:*:*:* | ||
4.32CPE matchmatch criteria | cpe:2.3:a:novell:iprint_client:4.32:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.