CVE-2000-0195
Corel Linux - Privilege Escalation via setxconf -T Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2000-0195. PoCs published by suid.
AI-analyzed exploit summary This exploit leverages a vulnerability in the setxconf utility in Corel Linux 1.0, where the -T option runs xinit with elevated privileges. By manipulating the ~/.xserverrc file, an attacker can execute arbitrary commands as root.
Description
setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by suid · textlocallinux
https://www.exploit-db.com/exploits/19765
This exploit leverages a vulnerability in the setxconf utility in Corel Linux 1.0, where the -T option runs xinit with elevated privileges. By manipulating the ~/.xserverrc file, an attacker can execute arbitrary commands as root.
Classification
Working Poc 90%
Attack Type
Lpe
Complexity
Trivial
Reliability
Reliable
Target:
Corel Linux 1.0 setxconf utility
Auth required
Prerequisites:
Access to a user account on Corel Linux 1.0 · Ability to write to ~/.xserverrc
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (2)
Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/1008
Third Party Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-02/0323.html
Scores
EPSS
0.0154
EPSS Percentile
71.7%
Details
Status
published
Products (1)
corel/linux
1.0
Published
Feb 24, 2000
Tracked Since
Feb 18, 2026