Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2008-0935

EPSS 82.86% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2008-0935

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a long argument to the ExecuteRequest method.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Novell iPrint客户端ienipp.ocx ActiveX控件 缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Novell iPrint打印解决方案允许用户向网络打印机发送文档。 Novell iPrint客户端ActiveX控件的实现上存在缓冲区溢出漏洞,远程攻击者可能利用此漏洞控制用户系统。 Novell iPrint客户端ActiveX控件(ienipp.ocx)没有正确地处理对ExecuteRequest()方式所传送的输入,如果用户受骗访问了恶意网页并向该方式传送了超过256字节的超长参数的话,就可能触发栈溢出,导致执行任意指令。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2008-0935

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2008-0935

登录查看更多情报信息。

Same Patch Batch · n/a · 2008-02-25 · 25 CVEs total

CVE-2008-0945ipswitch instant_messaging logging函数 格式化字符串漏洞
CVE-2008-0982Spyce - Python Server Pages ’spyce/examples/automaton.spy‘信息泄露漏洞
CVE-2008-0981Spyce - Python Server Pages spyce/examples/redirect.spy 开放重定向漏洞
CVE-2008-0980Spyce Sample Scripts 多个跨站脚本攻击漏洞
CVE-2008-0979Double-Take 特定信息包栈耗竭漏洞
CVE-2008-0978Double-Take 多种类型信息信息泄露漏洞
CVE-2008-0977Double-Take 特定信息包拒绝服务攻击漏洞
CVE-2008-0976Double-Take 异常信息包拒绝服务攻击漏洞
CVE-2008-0975Double-Take 向量<T>值 拒绝服务攻击漏洞
CVE-2008-0974Double-Take 多个拒绝服务攻击
CVE-2008-0973Double-Take username字段缓冲区溢出漏洞
CVE-2008-0946ipswitch instant_messaging IM Server 目录遍历漏洞
CVE-2008-0933Sun Solaris CPU性能计数器子系统 多个竞争条件漏洞
CVE-2008-0944ipswitch instant_messaging 版本字段 拒绝服务攻击漏洞
CVE-2008-0943Eagle Software Aeries 浏览器界面 多个SQL注入漏洞
CVE-2008-0942Eagle Software Aeries Browser Interface GrdBk参数 SQL注入漏洞
CVE-2008-0941Eagle Software Aeries Browser Interface 跨站脚本攻击漏洞
CVE-2008-0932The SWORD Project Diatheke diatheke.pl 远程命令执行漏洞
CVE-2008-0940Plain Black WebGUI Plain Black WebGUI 跨站脚本攻击漏洞
CVE-2008-0939WP Photo Album wppa.php 多个SQL注入漏洞

Showing top 20 of 25 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2008-0935

No comments yet


Leave a comment