Format string vulnerability in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via format specifiers in a command line argument.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2002-05-16 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2002-0218
Mitre link : CVE-2002-0218
CVE.ORG link : CVE-2002-0218
JSON object : View
Products Affected
sas
- sas_integration_technologies
- sas_base
CWE