← Back

Sas

sas

18 CVEs • 14 products

Products (14)

Click to collapse
Toggle

CVEs (18)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Sas
1Integration Technologies
Nov 21, 2024
Dec 12, 2023
N/A· v4
5.4 MEDIUM· v3
N/A· v2
SAS application is vulnerable to Reflected Cross-Site Scripting (XSS). Improper input validation in the `_program` parameter of the the `/SASStoredProcess/do` endpoint allows arbitrary JavaScript to be executed when spec...Show more
SAS application is vulnerable to Reflected Cross-Site Scripting (XSS). Improper input validation in the `_program` parameter of the the `/SASStoredProcess/do` endpoint allows arbitrary JavaScript to be executed when specially crafted URL is opened by an authenticated user. The attack is possible from a low-privileged user. Only versions 9.4_M7 and 9.4_M8 were tested and confirmed to be vulnerable, status of others is unknown. For above mentioned versions hot fixes were published. Show less
1Sas
1Web Administration Interface
Feb 18, 2025
Apr 3, 2023
N/A· v4
5.4 MEDIUM· v3
N/A· v2
A stored cross site scripting (XSS) vulnerability was discovered in the user management module of the SAS 9.4 Admin Console, due to insufficient validation and sanitization of data input into the user creation and editin...Show more
A stored cross site scripting (XSS) vulnerability was discovered in the user management module of the SAS 9.4 Admin Console, due to insufficient validation and sanitization of data input into the user creation and editing form fields. The product name is SAS Web Administration interface (SASAdmin). For the product release, the reported version is 9.4_M2 and the fixed version is 9.4_M3. For the SAS release, the reported version is 9.4 TS1M2 and the fixed version is 9.4 TS1M3.Show less
1Sas
1Web Report Studio
Nov 21, 2024
Feb 19, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel_list and saspfs_request_backurl_list. The first one affects the content of the button placed in the...Show more
SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel_list and saspfs_request_backurl_list. The first one affects the content of the button placed in the top left. The second affects the page to which the user is directed after pressing the button, e.g., a malicious web page. In addition, the second parameter executes JavaScript, which means XSS is possible by adding a javascript: URL.Show less
1Sas
1Sas/intrnet
Nov 21, 2024
Nov 19, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
SAS/Intrnet 9.4 build 1520 and earlier allows Local File Inclusion. The samples library (included by default) in the appstart.sas file, allows end-users of the application to access the sample.webcsf1.sas program, which...Show more
SAS/Intrnet 9.4 build 1520 and earlier allows Local File Inclusion. The samples library (included by default) in the appstart.sas file, allows end-users of the application to access the sample.webcsf1.sas program, which contains user-controlled macro variables that are passed to the DS2CSF macro. Users can escape the context of the configured user-controllable variable and append additional functions native to the macro but not included as variables within the library. This includes a function that retrieves files from the host OS.Show less
1Sas
1Environment Manager
Nov 21, 2024
Jun 25, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
SAS Environment Manager 2.5 allows XSS through the Name field when creating/editing a server. The XSS will prompt when editing the Configuration Properties.
1Sas
1Go Rpm Utils
Nov 21, 2024
Jun 24, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In package github.com/sassoftware/go-rpmutils/cpio before version 0.1.0, the CPIO extraction functionality doesn't sanitize the paths of the archived files for leading and non-leading ".." which leads in file extraction...Show more
In package github.com/sassoftware/go-rpmutils/cpio before version 0.1.0, the CPIO extraction functionality doesn't sanitize the paths of the archived files for leading and non-leading ".." which leads in file extraction outside of the current directory. Note: the fixing commit was applied to all affected versions which were re-released.Show less
1Sas
1Visual Analytics
Nov 21, 2024
Feb 23, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Graph Builder in SAS Visual Analytics 8.5 allows XSS via a graph template that is accessed directly.
1Sas
2Base Sas
Xml Mapper
Nov 21, 2024
Nov 14, 2019
N/A· v4
10.0 CRITICAL· v3
7.5 HIGH· v2
SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Server Side Request Forger...Show more
SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Server Side Request Forgery, and/or Potential Denial of Service attacks. This vulnerability also affects the XMLV2 LIBNAME engine when the AUTOMAP option is used.Show less
1Sas
1Sas Drug Development
Nov 21, 2024
Jul 31, 2019
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
SAS Drug Development (SDD) before 32DRG02 mishandles logout actions, which allows a user (who was previously logged in) to access resources by pressing a back or forward button in a web browser.
1Sas
1Web Infrastructure Platform
Nov 21, 2024
Jan 17, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
BI Web Services in SAS Web Infrastructure Platform before 9.4M6 allows XXE.
1Sas
1Web Infrastructure Platform
Nov 21, 2024
Jan 17, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
SAS Web Infrastructure Platform before 9.4M6 allows remote attackers to execute arbitrary code via a Java deserialization variant.
1Sas
1Web Infrastructure Platform
Nov 21, 2024
Jan 17, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Logon Manager in SAS Web Infrastructure Platform before 9.4M3 allows reflected XSS on the Timeout page.
1Sas
1Visual Analytics
May 6, 2026
Aug 25, 2014
N/A· v4
N/A· v3
6.0 MEDIUM· v2
Unrestricted file upload vulnerability in the image upload module in SAS Visual Analytics 6.4M1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing...Show more
Unrestricted file upload vulnerability in the image upload module in SAS Visual Analytics 6.4M1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors.Show less
1Sas
1Base Sas
Apr 29, 2026
Mar 1, 2014
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in the client application in Base SAS 9.2 TS2M3, SAS 9.3 TS1M1 and TS1M2, and SAS 9.4 TS1M0 allows user-assisted remote attackers to execute arbitrary code via a crafted SAS program.
1Sas
2Base
Integration Technologies
Apr 16, 2026
Dec 31, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
sastcpd in SAS/Base 8.0 might allow local users to gain privileges by setting the netencralg environment variable, which causes a segmentation fault.
1Sas
2Base
Integration Technologies
Apr 16, 2026
Dec 31, 2002
N/A· v4
N/A· v3
10.0 HIGH· v2
sastcpd in SAS/Base 8.0 allows local users to execute arbitrary code by setting the authprog environment variable to reference a malicious program, which is then executed by sastcpd.
1Sas
2Sas Base
Sas Integration Technologies
Apr 16, 2026
May 16, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via large command line argument.
1Sas
2Sas Base
Sas Integration Technologies
Apr 16, 2026
May 16, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
Format string vulnerability in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via format specifiers in a command line argument...Show more
Format string vulnerability in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via format specifiers in a command line argument.Show less