The VIOM vulnerability is detailed here:
The cause of the vulnerability is due to the version of Apache Tomcat VIOM uses in this version.
There are no plans to address this issue by way of a patch or hotfix in earlier versions of the software at the present time. However, the issue has been addressed in the revision of the product specified at the end of this article.
Please contact your Veritas Sales representative or the Veritas Sales group for upgrade information including upgrade eligibility to the release containing the resolution for this issue.
VIOM 7.4.2.700 deals with the vulnerability with a later version of Apache Tomcat. It can be obtained here: https://www.veritas.com/content/support/en_US/downloads/update.UPD963358.html