SUPPORT / SAMPLES & SAS NOTES
 

Support

Problem Note 58692: SAS® Web Report Studio is vulnerable to a cross-site scripting variant

DetailsHotfixAboutRate It

Severity: Medium

Description: SAS Web Report Studio has a vulnerability to a variant of cross-site scripting.

Potential Impact: Users might unknowingly execute malicious code.

Click the Hot Fix tab in this note to access the hot fix for this issue.



Operating System and Release Information

Product FamilyProductSystemProduct ReleaseSAS Release
ReportedFixed*ReportedFixed*
SAS SystemSAS Web Report StudioMicrosoft® Windows® for x644.34.4_M29.2 TS2M39.4 TS1M2
Microsoft Windows Server 2003 Datacenter Edition4.39.2 TS2M3
Microsoft Windows Server 2003 Enterprise Edition4.39.2 TS2M3
Microsoft Windows Server 2003 Standard Edition4.39.2 TS2M3
Microsoft Windows Server 2003 for x644.39.2 TS2M3
Microsoft Windows Server 20084.34.4_M29.2 TS2M39.4 TS1M2
Microsoft Windows Server 2008 R24.34.4_M29.2 TS2M39.4 TS1M2
Microsoft Windows Server 2008 for x644.34.4_M29.2 TS2M39.4 TS1M2
Microsoft Windows XP Professional4.39.2 TS2M3
Windows 7 Enterprise 32 bit4.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Enterprise x644.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Home Premium 32 bit4.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Home Premium x644.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Professional 32 bit4.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Professional x644.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Ultimate 32 bit4.34.4_M29.2 TS2M39.4 TS1M2
Windows 7 Ultimate x644.34.4_M29.2 TS2M39.4 TS1M2
Windows Vista4.39.2 TS2M3
Windows Vista for x644.39.2 TS2M3
64-bit Enabled AIX4.34.4_M29.2 TS2M39.4 TS1M2
64-bit Enabled Solaris4.34.4_M29.2 TS2M39.4 TS1M2
HP-UX IPF4.34.4_M29.2 TS2M39.4 TS1M2
Linux for x644.34.4_M29.2 TS2M39.4 TS1M2
Solaris for x644.34.4_M29.2 TS2M39.4 TS1M2
* For software releases that are not yet generally available, the Fixed Release is the software release in which the problem is planned to be fixed.