In Veritas System Recovery before 16 SP1, there is a DLL hijacking vulnerability in the patch installer if an attacker has write access to the directory from which the product is executed.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/97483 | Third Party Advisory VDB Entry |
https://www.veritas.com/content/support/en_US/security/VTS17-001.html#Issue1 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2017-04-05 20:59
Updated : 2019-10-03 00:03
NVD link : CVE-2017-7444
Mitre link : CVE-2017-7444
CVE.ORG link : CVE-2017-7444
JSON object : View
Products Affected
veritas
- system_recovery
CWE