CVE Vulnerabilities

CVE-2006-5328

Published: Oct 17, 2006 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to create arbitrary files via a symlink attack on the simulation.sql file.

Affected Software

NameVendorStart VersionEnd Version
XcodeApple*2.2 (including)
OpenbaseOpenbase_international_ltd*10.0 (including)
OpenbaseOpenbase_international_ltd7.0.15 (including)7.0.15 (including)
OpenbaseOpenbase_international_ltd8.0.4 (including)8.0.4 (including)
OpenbaseOpenbase_international_ltd9.1.5 (including)9.1.5 (including)

References