VYPR

Web Report Studio

by SAS Institute

CVEs (1)

  • CVE-2022-25256Feb 19, 2022
    risk 0.00cvss epss 0.01

    SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel_list and saspfs_request_backurl_list. The first one affects the content of the button placed in the top left. The second affects the page to which the user is…