Problem Note 64765: SAS® Visual Analytics contains an authorization-bypass security vulnerability
Severity: Medium
Description: SAS Visual Analytics authorization for accessing comments can be bypassed.
Potential Impact: Authenticated users without the proper role might access comments for a SAS Visual Analytics report.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Operating System and Release Information
SAS System | SAS Visual Analytics | Microsoft® Windows® for x64 | 7.5 | | 9.4 TS1M6 | |
Linux for x64 | 7.5 | | 9.4 TS1M6 | |
*
For software releases that are not yet generally available, the Fixed
Release is the software release in which the problem is planned to be
fixed.
Authenticated users can bypass authorization to access comments in a SAS Visual Analytics report.
Type: | Problem Note |
Priority: | medium |
Date Modified: | 2019-11-13 08:42:03 |
Date Created: | 2019-09-12 05:12:41 |