Unrated severityNVD Advisory· Published Nov 28, 2013· Updated Jun 17, 2026
CVE-2013-6322
CVE-2013-6322
Description
Cross-site scripting (XSS) vulnerability in Sterling Order Management in IBM Sterling Selling and Fulfillment Suite 8.0 before HF128 and 8.5 before HF93 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Affected products
3cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:8.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:8.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:8.5:*:*:*:*:*:*:*
- Range: 8.0 before HF128 and 8.5 before HF93
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.