← Browse

CVE-2000-1074

High

High exploit probability or critical severity with a known exploit.

CVSS base
10.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS — probability of exploitation (30 days)
4.1%
90.4th percentile
CISA KEV
Not listed
Weakness / dates
—
Published 2000-12-11 · modified 2026-09-23

CVSS breakdown

AV:N/AC:L/Au:N/C:C/I:C/A:C

Attack VectorNNetwork
Attack ComplexityLLow
AuthenticationNNone
ConfidentialityCComplete
IntegrityCComplete
AvailabilityCComplete

Timeline

Description

csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.

Affected

netscape

References

Official: NVD · CVE.org