CVE-2006-5851
openexec in OpenBase SQL before 10.0.1 allows local users to create arbitrary files via a symlink attack on the /tmp/output file, a different vulnerability than CVE-2006-5328.
- Affected products
- Openbase Sql
- Openbase International Ltd Openbase
- = 7.0.15, 8.0.4, 9.1.5, 10.0
- Fix
- Available
- CVSS 2.0
- 2.1 LOW
- EPSS
- 0.7% (52th percentile)
- Weakness
- CWE-59
- NVD status
- Modified
- Published
- 2006-11-10
CVE-2006-5851 at NVD
1 known exploit for CVE-2006-5851
Proof-of-concept code and exploit modules indexed by Sploitus