CVE-2012-0305

Severity
4.4MEDIUM
EPSS
0.1%
top 77.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 23
Latest updateMay 4

Description

Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to gain privileges via a Trojan horse DLL in the current working directory.

CVSS vector

AV:L/AC:M/C:P/I:P/A:PExploitability: 3.4 | Impact: 6.4

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-2wh2-cqr6-7mp4: Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to2022-05-04
CVEList
CVE-2012-0305: Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to2012-07-23

📋Vendor Advisories

2
Red Hat
boost regular expression memory corruption flaws2008-01-11
Red Hat
boost regular expression NULL dereference flaw2008-01-11
CVE-2012-0305 (MEDIUM CVSS 4.4) | Untrusted search path vulnerability | cvebase.io