CVE-2017-7444
Veritas System Recovery vulnerability analysis and mitigation

In Veritas System Recovery before 16 SP1, there is a DLL hijacking vulnerability in the patch installer if an attacker has write access to the directory from which the product is executed.


SourceNVD

Related Veritas System Recovery vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2020-36160HIGH8.8
  • Veritas System Recovery logoVeritas System Recovery
  • cpe:2.3:a:veritas:system_recovery
NoYesJan 06, 2021
CVE-2024-35204HIGH8.4
  • Veritas System Recovery logoVeritas System Recovery
  • cpe:2.3:a:veritas:system_recovery
NoYesMay 14, 2024
CVE-2017-7444HIGH7.8
  • Veritas System Recovery logoVeritas System Recovery
  • cpe:2.3:a:veritas:system_recovery
NoYesApr 05, 2017
CVE-2022-41320MEDIUM6.5
  • Veritas System Recovery logoVeritas System Recovery
  • cpe:2.3:a:veritas:system_recovery
NoYesSep 23, 2022
CVE-2022-26778MEDIUM6.5
  • Veritas System Recovery logoVeritas System Recovery
  • cpe:2.3:a:veritas:system_recovery
NoYesMar 10, 2022

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management