Problem Note 60362: The SAS® Visual Analytics Hub allows uploading of potentially malicious executable files in the comments (CVE-2014-5454)
Severity: Medium
Description: The SAS Visual Analytics Hub allows uploading of potentially malicious executable files in the comments. For more information, see CVE-2014-5454.
Potential Impact: Users might unknowingly execute malicious code.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Operating System and Release Information
| SAS System | SAS Visual Analytics | Linux for x64 | 6.4 | 7.1 | 9.4 TS1M1 | 9.4 TS1M2 |
| Microsoft® Windows® for x64 | 6.4 | 7.1 | 9.4 TS1M1 | 9.4 TS1M2 |
*
For software releases that are not yet generally available, the Fixed
Release is the software release in which the problem is planned to be
fixed.
| Type: | Problem Note |
| Priority: | high |
| Date Modified: | 2017-04-26 15:28:57 |
| Date Created: | 2017-04-26 14:23:51 |