CVE-2012-0305: Symantec Backupexec System Recovery
Medium severity, CVSS 4.4. EPSS: 0.4% chance of exploitation in the next 30 days.
Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
Affected products
- Symantec Backupexec System Recovery: version 2010 only; version 2011 only
- Symantec System Recovery: version 2011 only
Published 2012-07-23. Last modified 2026-06-16.