Unauthorized Access Vulnerability in Veritas System Recovery
CVE-2022-41320
6.5MEDIUM
What is CVE-2022-41320?
Veritas System Recovery (VSR) versions 18 and 21 contain a flaw where network destination passwords are stored in the Windows registry during backup configuration. This design oversight may allow a Windows user with sufficient privileges to gain unauthorized access to a network file system, potentially exposing sensitive data. Users should review their security practices to mitigate this risk and ensure proper access controls are enforced.