SUPPORT / SAMPLES & SAS NOTES
 

Support

Problem Note 65296: SAS® Visual Analytics Transport Service does not provide tokenized cross-site request forgery (CSRF) protection

DetailsHotfixAboutRate It

Severity: Medium

Description: SAS Visual Analytics Transport Service does not provide tokenized CSRF protection.

Potential Impact: An attacker might cause information to be submitted to a vulnerable application on behalf of a valid user.

Click the Hot Fix tab in this note to access the hot fix for this issue.



Operating System and Release Information

Product FamilyProductSystemProduct ReleaseSAS Release
ReportedFixed*ReportedFixed*
SAS SystemSAS Visual AnalyticsMicrosoft® Windows® for x647.59.4 TS1M6
Linux for x647.59.4 TS1M6
* For software releases that are not yet generally available, the Fixed Release is the software release in which the problem is planned to be fixed.