CVE-2010-3106
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 37%
from disclosure to weapon29 days
Published on NVDAug 23
1st PoC+29d
metasploitAug 4
exploitation probability
37%top 2% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the debug parameter, which allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a parameter value with a crafted length, related to the ExecuteRequest method.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/15073unverifiedexploitdbwww.exploit-db.com/exploits/16492unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.