Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Untrusted search path vulnerability in OpenBase SQL 10.0 and earlier, as used in Apple Xcode 2.2 2.2 and earlier and possibly other products, allows local users to execute arbitrary code via a modified PATH that references a malicious gzip program, which is executed by gnutar with certain TAR_OPTIONS environment variable settings, when gnutar is invoked by OpenBase.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Xcode TAR_OPTIONS环境变量获得权限漏洞
Vulnerability Description
Xcode是苹果机器上所使用的开发工具。 通过使用TAR_OPTIONS环境变量就可以强制gnutar没有指定路径便调用gzip,攻击者可以通过控制PATH变量获得root权限。
CVSS Information
N/A
Vulnerability Type
N/A