CVE-2020-9350: XSS
Published Feb 23, 2020
·Updated
Graph Builder in SAS Visual Analytics 8.5 allows XSS via a graph template that is accessed directly.
Affected Software
1 affected component
SAS Visual Analytics=8.5
Event History
Feb 23, 2020
CVE Published
via MITRE·12:53 AM
Data Sourced
via MITRE·12:53 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-9350?
CVE-2020-9350 is a vulnerability in SAS Visual Analytics 8.5 that allows XSS via a graph template.
2
How does CVE-2020-9350 affect SAS Visual Analytics 8.5?
CVE-2020-9350 allows XSS attacks when a graph template is accessed directly in SAS Visual Analytics 8.5.
3
What is the severity of CVE-2020-9350?
The severity of CVE-2020-9350 is medium with a CVSS score of 5.4.
4
How can I fix CVE-2020-9350?
To fix CVE-2020-9350, apply the necessary security updates provided by SAS.
5
Where can I find more information about CVE-2020-9350?
You can find more information about CVE-2020-9350 at the SAS support knowledge base: http://support.sas.com/kb/65/358.html