Problem Note 60362: The SAS® Visual Analytics Hub allows uploading of potentially malicious executable files in the comments (CVE-2014-5454)
Severity: Medium
Description: The SAS Visual Analytics Hub allows uploading of potentially malicious executable files in the comments. For more information, see CVE-2014-5454.
Potential Impact: Users might unknowingly execute malicious code.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Operating System and Release Information
SAS System | SAS Visual Analytics | Linux for x64 | 6.4 | 7.1 | 9.4 TS1M1 | 9.4 TS1M2 |
Microsoft® Windows® for x64 | 6.4 | 7.1 | 9.4 TS1M1 | 9.4 TS1M2 |
*
For software releases that are not yet generally available, the Fixed
Release is the software release in which the problem is planned to be
fixed.
Type: | Problem Note |
Priority: | high |
Date Modified: | 2017-04-26 15:28:57 |
Date Created: | 2017-04-26 14:23:51 |