PT-2024-27667 · Sas · Sas Broker

Published

2024-06-26

·

Updated

2024-11-05

·

CVE-2024-37571

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions SAS Broker version 9.2 build 1495
Description The issue allows attackers to cause denial of service or obtain sensitive information via a crafted payload to the debug parameter.
Recommendations For SAS Broker version 9.2 build 1495, consider restricting access to the debug parameter to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-37571

Affected Products

Sas Broker