← back
CVE-2010-3106

CVE-2010-3106

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 37%
from disclosure to weapon29 days
Published on NVDAug 23
1st PoC+29d
metasploitAug 4
exploitation probability
37%top 2% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the debug parameter, which allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a parameter value with a crafted length, related to the ExecuteRequest method.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.