| 概要 | Directory Traversal in /SASStudio/sasexec/sessions/{sessionID}/workspace/{InternalPath} in SAS Studio 9.4 allows remote attacker to access internal files by manipulating default path during file download. NOTE: this is disputed by the vendor because these filesystem paths are allowed for authorized users. |
|---|---|
| 公表日 | 2024年10月31日6:15 |
| 登録日 | 2024年10月31日12:00 |
| 最終更新日 | 2024年11月1日22:15 |