S
SAS
Security Risk Profile
62
/100
highSecurity Risk Score
Comprehensive risk assessment based on 22 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from May 3, 2002 to present
22
Total CVEs
14
Critical+High
0
Exploited
9
Unpatched
Threat Assessment
Avg CVSS
7.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
9
Critical/High
Risk Level
62/100
high
Severity Distribution
Critical
4High
10Medium
8Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
6
2
Buffer Overflow
3
3
Path Traversal
2
4
Input Validation
2
5
XEE
2
Most Affected Products
1. SAS Web Infrastructure Platform21
2. SAS Base SAS5
3. SAS Integration Technologies4
4. SAS Sas Base4
5. SAS Sas Integration Technologies4
Recent Vulnerabilities
See more →CVE-2024-48735
CVSS 7.7high
Oct 30, 2024🔧 No Patch
CVE-2024-48733
CVSS 8.8high
Oct 30, 2024🔧 No Patch
CVE-2024-48734
CVSS 8.8high
Oct 30, 2024🔧 No Patch
CVE-2024-37571
CVSS 4.3medium
Jun 26, 2024🔧 No Patch
CVE-2023-4932
CVSS 6.3medium
Reflected Cross-Site Scripting in SAS 9.4
Dec 12, 2023🔧 No Patch
CVE-2023-24724
CVSS 5.4medium
Apr 3, 2023🔧 No Patch
CVE-2022-25256
CVSS 6.1medium
Feb 19, 2022🔧 No Patch
CVE-2021-41569
CVSS 7.5high
Nov 19, 2021🔧 No Patch
CVE-2021-35475
CVSS 5.4medium
Jun 25, 2021🔧 No Patch
CVE-2020-7667
CVSS 7.5high
Arbitrary File Write via Archive Extraction (Zip Slip)
Jun 24, 2020
Monitor SAS in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.