4.3
CVSSv2

CVE-2013-4677

Published: 05/08/2013 Updated: 22/08/2013
CVSS v2 Base Score: 4.3 | Impact Score: 6.4 | Exploitability Score: 3.1
VMScore: 383
Vector: AV:L/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Symantec Backup Exec 2010 R3 prior to 2010 R3 SP3 and 2012 before SP2 uses weak permissions (Everyone: Read and Everyone: Change) for backup data files, which allows local users to obtain sensitive information or modify the outcome of a restore via direct access to these files.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec backup exec 2012

symantec backup exec 2010_r3

symantec backup exec 2010