Vulnerabilities > CVE-2006-5328
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to create arbitrary files via a symlink attack on the simulation.sql file.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 | |
Application | 4 |
References
- http://www.digitalmunition.com/Xcode_OpenBase_createfile.pl
- http://www.securityfocus.com/bid/20562
- http://secunia.com/advisories/22390
- http://lists.apple.com/archives/security-announce/2007/Oct/msg00001.html
- http://www.securitytracker.com/id?1018872
- http://secunia.com/advisories/27441
- http://www.vupen.com/english/advisories/2007/3665
- http://www.digitalmunition.com/DMA%5B2006-1016a%5D.txt