![]() | ![]() | ![]() | ![]() | ![]() |
Severity: Medium
Description: An authenticated user can store malicious JavaScript in the comment and description of a case.
Potential Impact: If a user accesses the case to edit the comment or description, the malicious JavaScript is executed in the browser.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Product Family | Product | System | Product Release | SAS Release | ||
Reported | Fixed* | Reported | Fixed* | |||
SAS System | SAS Anti-Money Laundering | Microsoft® Windows® for x64 | 7.1 | |||
64-bit Enabled AIX | 7.1 | |||||
64-bit Enabled Solaris | 7.1 | |||||
Linux for x64 | 7.1 |