Medium severity5.4NVD Advisory· Published Jun 25, 2021· Updated Jun 17, 2026
CVE-2021-35475
CVE-2021-35475
Description
SAS Environment Manager 2.5 allows XSS through the Name field when creating/editing a server. The XSS will prompt when editing the Configuration Properties.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:sas:environment_manager:2.5:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sas:environment_manager:2.5:*:*:*:*:*:*:*
- (no CPE)range: <=2.5
- SAS/Environment Managerdescription
Patches
Vulnerability mechanics
References
3- support.sas.comnvdVendor Advisory
- packetstormsecurity.com/files/163294/SAS-Environment-Manager-2.5-Cross-Site-Scripting.htmlnvdBroken Link
- github.com/saitamang/CVE-2021-35475/blob/main/README.mdnvdBroken Link
News mentions
0No linked articles in our index yet.