First published: Sun Feb 23 2020(Updated: )
Graph Builder in SAS Visual Analytics 8.5 allows XSS via a graph template that is accessed directly.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAS Visual Analytics | =8.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9350 is a vulnerability in SAS Visual Analytics 8.5 that allows XSS via a graph template.
CVE-2020-9350 allows XSS attacks when a graph template is accessed directly in SAS Visual Analytics 8.5.
The severity of CVE-2020-9350 is medium with a CVSS score of 5.4.
To fix CVE-2020-9350, apply the necessary security updates provided by SAS.
You can find more information about CVE-2020-9350 at the SAS support knowledge base: http://support.sas.com/kb/65/358.html