Description
Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
References (2)
Core 2
Core References
Third Party Advisory x_refsource_confirm
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120720_01
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/54594
Scores
EPSS
0.0008
EPSS Percentile
22.4%
Details
Status
published
Products (3)
symantec/backupexec_system_recovery
2010
symantec/backupexec_system_recovery
2011
symantec/system_recovery
2011
Published
Jul 23, 2012
Tracked Since
Feb 18, 2026