Severity: Medium
Description: The HTML Commons component in SAS 9.4 Web Infrastructure Platform contains a cross-site scripting vulnerability.
Potential Impact: A user might unknowingly execute malicious code.
Click the Hot Fix tab in this note to access the hot fixes currently available for this issue. Hot fixes for additional products are still underway. This message will be updated when all hot fixes are available. Contact SAS Technical Support if you have questions.
Product Family | Product | System | Product Release | SAS Release | ||
Reported | Fixed* | Reported | Fixed* | |||
SAS System | SAS Web Infrastructure Platform | Solaris for x64 | 9.4_M7 | 9.4 TS1M7 | ||
Linux for x64 | 9.4_M7 | 9.4 TS1M7 | ||||
HP-UX IPF | 9.4_M7 | 9.4 TS1M7 | ||||
64-bit Enabled Solaris | 9.4_M7 | 9.4 TS1M7 | ||||
64-bit Enabled AIX | 9.4_M7 | 9.4 TS1M7 | ||||
Microsoft® Windows® for x64 | 9.4_M7 | 9.4 TS1M7 |
A fix for this issue for SAS Financial Management 5.61 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/L1Y.html#69136A fix for this issue for SAS Federation Server Manager Mid-Tier 4.4 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/L5C.html#69136A fix for this issue for SAS Visual Analytics 7.51 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/I9T.html#69136A fix for this issue for SAS Environment Manager Mid-Tier 2.6_M1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J8Q.html#69136A fix for this issue for SAS Factory Miner 15.2 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J4Z.html#69136A fix for this issue for SAS Workflow Administrator 1.5_M1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J3J.html#69136A fix for this issue for SAS Business Rules Manager 3.3_M1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/I7S.html#69136A fix for this issue for Model Manager 14.3_M1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J6P.html#69136A fix for this issue for SAS BI Dashboard 4.41_M1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/L5R.html#69136A fix for this issue for SAS High-Performance Risk 4.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J9D.html#69136A fix for this issue for SAS Grid Manager Module for SAS Environment Manager 1.7 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/K1N.html#69136A fix for this issue for SAS HTML Application Themes 5.2 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/I7T.html#69136A fix for this issue for SAS Job Flow 9.47 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/K1J.html#69136A fix for this issue for SAS Middle Tier 9.4_M7 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J2L.html#69136A fix for this issue for SAS Marketing Automation 6.6 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/H8P.html#69136A fix for this issue for SAS Marketing Optimization 6.6 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/H8Q.html#69136A fix for this issue for Field Quality Analytics 6.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J2F.html#69136A fix for this issue for SAS Forecast Analyst Workbench 5.4 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/H8X.html#69136A fix for this issue for SAS BI Dashboard 4.41 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/H9V.html#69136A fix for this issue for SAS Real World Evidence Mid-Tier 4.5 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/L5E.html#69136A fix for this issue for SAS Episode Analytics Mid-Tier 4.5 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/L5I.html#69136A fix for this issue for Model Manager 14.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/G3Z.html#69136A fix for this issue for SAS Business Rules Manager 3.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/F5B.html#69136A fix for this issue for SAS Workflow Administrator 1.5 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J4T.html#69136A fix for this issue for SAS Business Data Network Mid-Tier 3.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/F9W.html#69136A fix for this issue for SAS Lineage Mid-Tier 3.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/F8V.html#69136A fix for this issue for SAS Financial Management 5.6 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/G3M.html#69136A fix for this issue for SAS Reference Data Manager 3.3 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/G3I.html#69136A fix for this issue for SAS Data Remediation Mid-Tier 2.4 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J7E.html#69136A fix for this issue for SAS Task Manager Mid-Tier 2.4 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/J1P.html#69136A fix for this issue for SAS Infrastructure for Risk Management 3.6 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/G2T.html#69136A fix for this issue for SAS Fraud Management 6.1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/F6R.html#69136A fix for this issue for SAS Model Implementation Platform 3.2 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/F6U.html#69136A fix for this issue for SAS Environment Manager Mid-Tier 2.6 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/G5X.html#69136A fix for this issue for SAS Flex Application Themes 5.1 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/G4B.html#69136A fix for this issue for SAS Visual Analytics 7.5 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/F9L.html#69136A fix for this issue for SAS Middle Tier 9.4_M6 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/D8T.html#69136A fix for this issue for SAS Risk and Finance Workbench 3.2 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/D4L.html#69136A fix for this issue for SAS Risk Governance Framework 7.4 is available at:
https://tshf.sas.com/techsup/download/hotfix/HF2/D4Z.html#69136Type: | Problem Note |
Priority: | high |
Date Modified: | 2022-04-26 11:20:34 |
Date Created: | 2022-04-26 10:34:34 |