Vulnerabilities > SAS > Visual Analytics

DATE CVE VULNERABILITY TITLE RISK
2020-02-23 CVE-2020-9350 Cross-site Scripting vulnerability in SAS Visual Analytics 8.5
Graph Builder in SAS Visual Analytics 8.5 allows XSS via a graph template that is accessed directly.
network
sas CWE-79
3.5
2014-08-25 CVE-2014-5454 Arbitrary File Upload vulnerability in SAS Visual Analytics 6.4
Unrestricted file upload vulnerability in the image upload module in SAS Visual Analytics 6.4M1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors.
network
sas
6.0