CNCVE编号:CNCVE-20001073 CVE编号:CVE-2000-1073 安全级别:中 漏洞中文描述: iCal 2.1 Patch 2中的csstart程序在当前工作目录下查找cshttpd程序,这样就允许本地用户通过在一个目录下建立特洛伊木马cshttpd程序以及从该目录调用csstart得到root权限。 漏洞英文描述: csstart program in iCal 2.1 Patch 2 searches for the cshttpd program in the current working directory, which allows local users to gain root privileges by creating a Trojan Horse cshttpd program in a directory and calling csstart from that directory. 漏洞参考: 系统类型:其他 漏洞类型:其他