CVE-2006-5851

Openbase - Symlink Following

Title source: rule

Description

openexec in OpenBase SQL before 10.0.1 allows local users to create arbitrary files via a symlink attack on the /tmp/output file, a different vulnerability than CVE-2006-5328.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Kevin Finisterre · perllocalosx
https://www.exploit-db.com/exploits/2737

Scores

EPSS 0.0031
EPSS Percentile 54.3%

Details

CWE
CWE-59
Status published
Products (4)
openbase_international_ltd/openbase 7.0.15
openbase_international_ltd/openbase 8.0.4
openbase_international_ltd/openbase 9.1.5
openbase_international_ltd/openbase 10.0
Published Nov 10, 2006
Tracked Since Feb 18, 2026