Problem Note 67330: The SAS® Visual Analytics Transport Service contains a broken access control vulnerability
Severity: Medium
Description: The SAS Visual Analytics Transport Service contains a broken access control vulnerability.
Potential Impact: Unauthenticated users can access internal SAS settings through a certain REST application programming interface (API) endpoint.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Operating System and Release Information
SAS System | SAS Visual Analytics | Microsoft® Windows® for x64 | 7.5 | | 9.4 TS1M6 | |
Linux for x64 | 7.5 | | 9.4 TS1M6 | |
*
For software releases that are not yet generally available, the Fixed
Release is the software release in which the problem is planned to be
fixed.
Type: | Problem Note |
Priority: | medium |
Date Modified: | 2021-02-08 14:46:23 |
Date Created: | 2021-01-27 21:34:29 |