CVE-2002-0218

Format string vulnerability in (1) sastcpd in SAS/Base 8.0 and 8.1 or (2) objspawn in SAS/Integration Technologies 8.0 and 8.1 allows local users to execute arbitrary code via format specifiers in a command line argument.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sas:sas_base:8.0:*:*:*:*:*:*:*
cpe:2.3:a:sas:sas_base:8.1:*:*:*:*:*:*:*
cpe:2.3:a:sas:sas_integration_technologies:8.0:*:*:*:*:*:*:*
cpe:2.3:a:sas:sas_integration_technologies:8.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2002-05-16 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2002-0218

Mitre link : CVE-2002-0218

CVE.ORG link : CVE-2002-0218


JSON object : View

Products Affected

sas

  • sas_base
  • sas_integration_technologies