CNCVE编号:CNCVE-20000393 CVE编号:CVE-2000-0393 安全级别:中 漏洞中文描述: KDE kscd程序当执行一个在用户的SHELL环境变量中指定的程序时没有释放权限,这导致用户可以通过指定一个替换程序去执行来得到权限。 漏洞英文描述: The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program to execute. 漏洞参考: 系统类型:其他 漏洞类型:其他