Openbase International Ltd's vulnerability profile concentrates in its Openbase database product, a niche offering that sits prominently in the landscape relative to its narrow product scope. The recurring weakness classes—including improper input validation, buffer-boundary violations, path-traversal conditions, and link-following flaws—reflect the file-access and data-handling mechanics typical of embedded or server-side database engines, and public exploit code has frequently accompanied disclosures affecting this product. Defenders tracking Openbase deployments should prioritize these input-validation and file-system interaction boundaries; live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openbase International Ltd over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-5926HIGH OpenBase 10.0.5 and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in arguments to the (1) AsciiBackup, (2) OEMLicenseInstall, and | Nov 10, 2007 | 9.0 | 33 | NO | YES |
CVE-2007-5929HIGH Buffer overflow in OpenBase 10.0.5 and earlier might allow remote authenticated users to execute arbitrary code or cause a denial of service (daemon crash) by creating a stored pro | Nov 10, 2007 | 9.0 | 23 | NO | NO |
CVE-2007-5927HIGH Directory traversal vulnerability in OpenBase 10.0.5 and earlier allows remote authenticated users to create files with arbitrary contents via a .. (dot dot) in the first argument | Nov 10, 2007 | 8.1 | 22 | NO | NO |
CVE-2007-5928HIGH OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long strings in a SELECT statement. NOTE: this might be a buffe | Nov 10, 2007 | 8.1 | 21 | NO | NO |
CVE-2006-5852MEDIUM Untrusted search path vulnerability in openexec in OpenBase SQL before 10.0.1 allows local users to gain privileges via a modified PATH that references a malicious helper binary, a | Nov 10, 2006 | 4.6 | 21 | NO | YES |
CVE-2006-5327HIGH Untrusted search path vulnerability in OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to execute arbitrar | Oct 17, 2006 | 7.2 | 19 | NO | NO |
CVE-2006-5328HIGH OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to create arbitrary files via a symlink attack on the simu | Oct 17, 2006 | 7.2 | 18 | NO | NO |
openexec in OpenBase SQL before 10.0.1 allows local users to create arbitrary files via a symlink attack on the /tmp/output file, a different vulnerability than CVE-2006-5328. | Nov 10, 2006 | 2.1 | 17 | NO | YES |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openbase International Ltd.
Media articles that mention a CVE ID that affects a product developed by Openbase International Ltd — matched by CVE ID, not by vendor name.