Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-2432

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2008-2432
Last Modified 26 Nov 2008 12:00:00
Published 25 Nov 2008 08:30:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-2432

Summary

Insecure method vulnerability in the GetFileList method in an unspecified ActiveX control in Novell iPrint Client before 5.06 allows remote attackers to list the image files in an arbitrary directory via a directory name in the argument.

Vulnerable Systems

Application

  • Novell Iprint 4.26

  • Novell Iprint 4.27

  • Novell Iprint 4.28

  • Novell Iprint 4.30

  • Novell Iprint 4.32

  • Novell Iprint 4.34

  • Novell Iprint 4.36

  • Novell Iprint 4.38

  • Novell Iprint 5.04


References

BID - 30813

MISC - http://secunia.com/secunia_research/2008-30/advisory/

SECUNIA - 30667


Last Updated: 27 May 2016 10:47:52