← Vulnerability feed

Vulnerability record · CVE-2008-0935 · published 25 February 2008

CVE-2008-0935: Novell iPrint Client ActiveX control stack buffer overflow

Novell · Iprint

The Novell iPrint Control ActiveX control (ienipp.ocx) in iPrint Client before 4.34 contains a stack-based buffer overflow. A long argument passed to the ExecuteRequest method overflows a stack buffer, allowing remote code execution. Because the control is loaded in the browser, any user who visits a malicious page with the control installed is exposed.

10.0 CVSS 2.0 High EPSS 65% · top 0.8% CWE-119 · Memory buffer overflow
10.0CVSS 2.0 base score
65%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
10References
16 Jun 2026Last modified by NVD

Description

Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a long argument to the ExecuteRequest method.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 19 September 2026. Confidence: medium.

high priorityRemote unauthenticated code execution with full impact and a very high EPSS score, though exploitation requires the victim to load the ActiveX control in a browser.

What it is

The Novell iPrint Control ActiveX control (ienipp.ocx) in iPrint Client before 4.34 contains a stack-based buffer overflow. A long argument passed to the ExecuteRequest method overflows a stack buffer, allowing remote code execution. Because the control is loaded in the browser, any user who visits a malicious page with the control installed is exposed.

Impact

An attacker can execute arbitrary code in the context of the logged-on user, leading to full compromise of the workstation. Given the CVSS 2.0 vector (C:C/I:C/A:C), confidentiality, integrity and availability are all fully impacted.

Attack surface

Reached over the network through a web page that instantiates the iPrint ActiveX control and calls ExecuteRequest with an oversized argument. No authentication is required (Au:N), but the victim must have the vulnerable control installed and interact with the malicious page, so user interaction is effectively required.

Exploitation

The record is not listed in CISA KEV and no ransomware usage is documented. EPSS is high (0.6514, 99.2nd percentile), indicating a strong likelihood of exploitation activity, but no public exploit reference is tagged in the supplied data.

What to do

  • Upgrade Novell iPrint Client to version 4.34 or later using the vendor patch referenced in the advisory.
  • If immediate patching is not possible, disable or remove the iPrint Control ActiveX control (ienipp.ocx) and block its CLSID via Internet Explorer kill-bit or equivalent browser policy.
  • Restrict browsing to trusted sites and enforce ActiveX controls to prompt or be disabled in the browser security zones.
  • Remove the iPrint Client from systems that do not require it to reduce the exposed attack surface.

Detection

  • Monitor for processes loading ienipp.ocx, especially from browser processes such as iexplore.exe.
  • Hunt for crashes or exceptions in iexplore.exe or the iPrint control that correlate with visits to untrusted web pages.
  • Review proxy and web logs for pages that embed the iPrint ActiveX control or reference its CLSID.
  • Check endpoint inventory for iPrint Client versions below 4.34 and flag them for remediation.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2008-0935 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2013-1091Novell iprint memory buffer overflow vulnerabilityStack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.EPSS 6.2%10.0CVE-2012-0411Novell iprint vulnerabilityUnspecified vulnerability in Novell iPrint Client before 5.82 allows remote attackers to execute arbitrary code via an op-client-interface-version ac…EPSS 4.3%10.0CVE-2011-4187Novell iprint memory buffer overflow vulnerabilityBuffer overflow in the GetDriverSettings function in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute ar…EPSS 4.0%10.0CVE-2011-4185Novell iprint memory buffer overflow vulnerabilityThe GetPrinterURLList2 method in the ActiveX control in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code…EPSS 3.5%9.3CVE-2011-4186Novell iprint memory buffer overflow vulnerabilityHeap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a craf…EPSS 3.6%9.3CVE-2011-1708Novell iprint memory buffer overflow vulnerabilityStack-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted op-pri…EPSS 5.9%9.3CVE-2011-1699Novell iprint memory buffer overflow vulnerabilityHeap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted uri par…EPSS 4.9%9.3CVE-2011-1700Novell iprint memory buffer overflow vulnerabilityHeap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted profile…EPSS 4.9%

Source: NIST National Vulnerability Database (record CVE-2008-0935), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.