Problem Note 67767: CAS contains a broken access-control vulnerability for table views
Severity: High
Description: Access controls from SAS® Cloud Analytic Services (CAS) are bypassed on table views.
Potential Impact: This vulnerability potentially enables unauthorized users to access data.
Click the Hot Fix tab in this note to access the hot fix for this issue.
Operating System and Release Information
SAS System | SAS Viya | Microsoft® Windows® for x64 | 3.5 | 3.5 | Viya | Viya |
Linux for x64 | 3.5 | 3.5 | Viya | Viya |
*
For software releases that are not yet generally available, the Fixed
Release is the software release in which the problem is planned to be
fixed.
Type: | Problem Note |
Priority: | alert |
Date Modified: | 2021-04-13 10:53:11 |
Date Created: | 2021-04-12 12:26:49 |