Lucene search

K
cveMitreCVE-2010-3107
HistoryAug 23, 2010 - 10:00 p.m.

CVE-2010-3107

2010-08-2322:00:03
CWE-264
mitre
web.nvd.nist.gov
27
cve-2010-3107
activex control
ienipp.ocx
browser plugin
novell iprint client
denial of service
logic flaw

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

AI Score

6.7

Confidence

Low

EPSS

0.406

Percentile

97.3%

A certain ActiveX control in ienipp.ocx in the browser plugin in Novell iPrint Client before 5.42 does not properly restrict the set of files to be deleted, which allows remote attackers to cause a denial of service (recursive file deletion) via unspecified vectors related to a “logic flaw” in the CleanUploadFiles method in the nipplib.dll module.

Affected configurations

Nvd
Node
novelliprintRange5.40
OR
novelliprintMatch4.26
OR
novelliprintMatch4.27
OR
novelliprintMatch4.28
OR
novelliprintMatch4.30
OR
novelliprintMatch4.32
OR
novelliprintMatch4.34
OR
novelliprintMatch4.36
OR
novelliprintMatch4.38
OR
novelliprintMatch5.04
OR
novelliprintMatch5.12
OR
novelliprintMatch5.20b
OR
novelliprintMatch5.30
OR
novelliprintMatch5.32
VendorProductVersionCPE
novelliprint*cpe:2.3:a:novell:iprint:*:*:*:*:*:*:*:*
novelliprint4.26cpe:2.3:a:novell:iprint:4.26:*:*:*:*:*:*:*
novelliprint4.27cpe:2.3:a:novell:iprint:4.27:*:*:*:*:*:*:*
novelliprint4.28cpe:2.3:a:novell:iprint:4.28:*:*:*:*:*:*:*
novelliprint4.30cpe:2.3:a:novell:iprint:4.30:*:*:*:*:*:*:*
novelliprint4.32cpe:2.3:a:novell:iprint:4.32:*:*:*:*:*:*:*
novelliprint4.34cpe:2.3:a:novell:iprint:4.34:*:*:*:*:*:*:*
novelliprint4.36cpe:2.3:a:novell:iprint:4.36:*:*:*:*:*:*:*
novelliprint4.38cpe:2.3:a:novell:iprint:4.38:*:*:*:*:*:*:*
novelliprint5.04cpe:2.3:a:novell:iprint:5.04:*:*:*:*:*:*:*
Rows per page:
1-10 of 141

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

AI Score

6.7

Confidence

Low

EPSS

0.406

Percentile

97.3%

Related for CVE-2010-3107