CVE-2000-0393

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published May 16, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0393 is a privilege escalation vulnerability affecting the KDE kscd program. instead of dropping privileges, the software executes a program specified in a user's SHELL environmental variable with the same level of access. This creates an opportunity for users to exploit the flaw by specifying an alternate high-privileged program to run, thereby gaining elevated privileges within the system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • K Desktop Environment

Affected Vendors

  • KDE Community