CVE-2012-0305: Symantec Backupexec System Recovery

Medium severity, CVSS 4.4. EPSS: 0.4% chance of exploitation in the next 30 days.

Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to gain privileges via a Trojan horse DLL in the current working directory.

Affected products

  • Symantec Backupexec System Recovery: version 2010 only; version 2011 only
  • Symantec System Recovery: version 2011 only

Published 2012-07-23. Last modified 2026-06-16.