Integration Technologies
Sas · 3 CVEs
CVE-2023-4932
MEDIUM
Reflected Cross-Site Scripting in SAS 9.4
Dec 12, 2023
CVE-2002-2018
HIGH
sastcpd in SAS/Base 8.0 might allow local users to gain privileges by setting the netencralg environment variable, whic…
Jul 14, 2005
CVE-2002-2017
HIGH
sastcpd in SAS/Base 8.0 allows local users to execute arbitrary code by setting the authprog environment variable to re…
Jul 14, 2005
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2023-4932 | Reflected Cross-Site Scripting in SAS 9.4 | MEDIUM | 0.63% | Dec 12, 2023 |
| CVE-2002-2018 | sastcpd in SAS/Base 8.0 might allow local users to gain privileges by setting the netencralg environment variable, which causes a segmentation fault. | HIGH | 0.34% | Jul 14, 2005 |
| CVE-2002-2017 | sastcpd in SAS/Base 8.0 allows local users to execute arbitrary code by setting the authprog environment variable to reference a malicious program, which is th… | HIGH | 2.47% | Jul 14, 2005 |
Showing 1 to 3 of 3 CVEs