![]() | ![]() | ![]() | ![]() | ![]() |
Severity: High
Description: A vulnerability in Apache Tomcat affects SAS Environment Manager. Details about the vulnerability are available in CVE-2018-11784.
Potential Impact: Attackers can use a specially crafted URL to cause Apache Tomcat to redirect the user to any URI of the attackers choice. See the CVE details in the link listed above.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Product Family | Product | System | SAS Release | |
Reported | Fixed* | |||
SAS System | SAS Environment Manager | Microsoft® Windows® for x64 | 9.4 TS1M0 | |
64-bit Enabled AIX | 9.4 TS1M0 | |||
64-bit Enabled Solaris | 9.4 TS1M0 | |||
HP-UX IPF | 9.4 TS1M0 | |||
Linux for x64 | 9.4 TS1M0 | |||
Solaris for x64 | 9.4 TS1M0 |