Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2006-5327

N/A

Untrusted search path vulnerability in OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to execute arbitrary code via a modified PATH that references a malicious gzip program, which is executed by gnutar with certain TAR_OPTIONS environment variable settings, when gnutar is invoked by OpenBase.

EPSS 0.58% exploit very unlikely percentile 44.8%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

  • Xcode macOS com.apple.dt.Xcode
    Affected ≤2.2 Fixed in > 2.2 Latest tracked 26.6 patched
Vulnerable CPE configurations (1)
Vendor Product Versions
apple xcode
All platforms (wildcard)
≤2.2
View on NVD ↗ Advisory · secunia.com