VULNERABILITY INTELLIGENCE

CVE-2000-1071

CVSS score10 HIGH
EPSS probability3.00%
CISA KEVNot currently listed
Published2000-12-11
Last modified2026-06-16

Description

The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges.