Loading...
Searching...
No Matches
getrawdata.test.1.sas File Reference

testing getrawdata service - input validation (security) More...

Go to the source code of this file.

Detailed Description

table must be a well-formed LIBREF.DATASET (the trailing format-catalog suffix is permitted), filter must be an integer and type one of the supported download types. An invalid value aborts the service before any request content can execute. The abort is asserted from the child job state: the payloads either resolve to a real table when executed as macro code, or write a file outside the WORK directory (verified by live probe) - so on the vulnerable service the job completes, and only the validating service cancels it. The assertion cannot pass against a service that does not validate.

SAS Macros

Definition in file getrawdata.test.1.sas.