CVE-2000-1074

iCal 2.1 Patch 2 - Privilege Escalation

Title source: llm

Description

csstart program in iCal 2.1 Patch 2 uses relative pathnames to install the libsocket and libnsl libraries, which could allow the icsuser account to gain root privileges by creating a Trojan Horse library in the current or parent directory.

Exploits (1)

exploitdb WORKING POC VERIFIED
by @stake · bashlocalsolaris
https://www.exploit-db.com/exploits/20276

Scores

EPSS 0.0705
EPSS Percentile 91.5%

Details

Status published
Products (1)
netscape/iplanet_ical 2.1 patch2
Published Dec 11, 2000
Tracked Since Feb 18, 2026