Thomson Reuters Information for VU#893462
Thomson Reuters Velocity Analytics Vhayu Analytic Server version 6.9.4 build 2995 contains a code injection vulnerability
- Vendor Information Help Date Notified: 16 Oct 2013
- Statement Date:
- Date Updated: 23 Jan 2014
No statement is currently available from the vendor regarding this vulnerability.
For customers who have TREP-VA deployed on platforms which are in trusted networks and do not allow inbound connections from untrusted networks, the http interface would not be vulnerable.
There are no additional comments at this time.
If you have feedback, comments, or additional information about this vulnerability, please send us email.