The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote malicious users to monitor X Windows events and gain privileges.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
netscape iplanet ical 2.1 |