Vulnerabilities > Symantec > Backupexec System Recovery > Medium

DATE CVE VULNERABILITY TITLE RISK
2012-07-23 CVE-2012-0305 Unspecified vulnerability in Symantec Backupexec System Recovery and System Recovery
Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
local
symantec
4.4
2008-06-02 CVE-2008-2512 Path Traversal vulnerability in Symantec Backupexec System Recovery
Directory traversal vulnerability in Symantec Backup Exec System Recovery Manager 7.x before 7.0.4 and 8.x before 8.0.2 allows remote attackers to read arbitrary files via unspecified vectors.
network
low complexity
symantec CWE-22
5.0
2007-11-29 CVE-2007-4346 Resource Management Errors vulnerability in Symantec Backupexec System Recovery 11.0.6235/11.0.7170
The Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allows remote attackers to cause a denial of service (NULL dereference and service crash) via a crafted packet to port 5633/tcp.
network
low complexity
symantec CWE-399
5.0
2007-04-30 CVE-2007-2361 Local Security vulnerability in BackupExec System Recovery
Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore points images are configured, uses weak permissions (world readable) for a configuration file with network share credentials, which allows local users to obtain the credentials by reading the file.
local
low complexity
symantec
4.9
2007-04-30 CVE-2007-2360 Local Security vulnerability in BackupExec System Recovery
Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore point images are configured, encrypt network share credentials with a key formed by a hash of the username, which allows local users to obtain the credentials by calculating the key.
local
low complexity
symantec
6.8