VYPR
Vendor

SAS Institute

Products
3
CVEs
2
Across products
2
Status
Private

Products

3

Recent CVEs

2
  • CVE-2002-2017Dec 31, 2002
    risk 0.00cvss epss 0.02

    sastcpd in SAS/Base 8.0 allows local users to execute arbitrary code by setting the authprog environment variable to reference a malicious program, which is then executed by sastcpd.

  • CVE-1999-1325Dec 31, 1999
    risk 0.00cvss epss 0.00

    SAS System 5.18 on VAX/VMS is installed with insecure permissions for its directories and startup file, which allows local users to gain privileges.