CVE-2000-0393
CVSS 2.0 Score 7.2 of 10 (high)
Details
Published May 16, 2000
Updated: Nov 20, 2024
Summary
CVE-2000-0393 is a privilege escalation vulnerability affecting the KDE kscd program. instead of dropping privileges, the software executes a program specified in a user's SHELL environmental variable with the same level of access. This creates an opportunity for users to exploit the flaw by specifying an alternate high-privileged program to run, thereby gaining elevated privileges within the system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- K Desktop Environment
Affected Vendors
- KDE Community