CVE

Id
6399  
CVE No.
CVE-2002-2017  
Status
Candidate  
Description
sastcpd in SAS/Base 8.0 allows local users to execute arbitrary code by setting the authprog environment variable to reference a malicious program, which is then executed by sastcpd.  
Phase
Assigned (20050714)  
Votes
None (candidate not yet proposed)  
Comments