Unrated severityNVD Advisory· Published Apr 24, 2014· Updated Jun 17, 2026
CVE-2013-6738
CVE-2013-6738
Description
Cross-site scripting (XSS) vulnerability in IBM SmartCloud Analytics Log Analysis 1.1 and 1.2 before 1.2.0.0-CSI-SCALA-IF0003 allows remote attackers to inject arbitrary web script or HTML via an invalid query parameter in a response from an OAuth authorization endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:ibm:smartcloud_analytics_log_analysis:1.1.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:smartcloud_analytics_log_analysis:1.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:smartcloud_analytics_log_analysis:1.2.0:*:*:*:*:*:*:*
- (no CPE)range: >=1.1, <1.2.0.0-CSI-SCALA-IF0003
Patches
Vulnerability mechanics
References
7News mentions
0No linked articles in our index yet.