← Vulnerability feed

Vulnerability record · CVE-2010-3106 · published 23 August 2010

CVE-2010-3106: Novell iprint improper input validation vulnerability

Novell · Iprint

The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the debug parameter, which allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a parameter value with a crafted length, related to the ExecuteRequest method.

9.3 CVSS 2.0 High EPSS 37% · top 1.5% CWE-20 · Improper input validation
9.3CVSS 2.0 base score
37%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

The ienipp.ocx ActiveX control in the browser plugin in Novell iPrint Client before 5.42 does not properly validate the debug parameter, which allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a parameter value with a crafted length, related to the ExecuteRequest method.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2010-3106 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2013-1091Novell iprint memory buffer overflow vulnerabilityStack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.EPSS 6.2%10.0CVE-2012-0411Novell iprint vulnerabilityUnspecified vulnerability in Novell iPrint Client before 5.82 allows remote attackers to execute arbitrary code via an op-client-interface-version ac…EPSS 4.3%10.0CVE-2011-4187Novell iprint memory buffer overflow vulnerabilityBuffer overflow in the GetDriverSettings function in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute ar…EPSS 4.0%10.0CVE-2011-4185Novell iprint memory buffer overflow vulnerabilityThe GetPrinterURLList2 method in the ActiveX control in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code…EPSS 3.5%10.0CVE-2008-0935Novell iPrint Client ActiveX control stack buffer overflowThe Novell iPrint Control ActiveX control (ienipp.ocx) in iPrint Client before 4.34 contains a stack-based buffer overflow. A long argument passed to…EPSS 65%analysed9.3CVE-2011-4186Novell iprint memory buffer overflow vulnerabilityHeap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a craf…EPSS 3.6%9.3CVE-2011-1708Novell iprint memory buffer overflow vulnerabilityStack-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted op-pri…EPSS 5.9%9.3CVE-2011-1699Novell iprint memory buffer overflow vulnerabilityHeap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted uri par…EPSS 4.9%

Source: NIST National Vulnerability Database (record CVE-2010-3106), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.