Cross-site scripting (XSS) vulnerability in IBM SmartCloud Analytics Log Analysis 1.1 and 1.2 prior to 1.2.0.0-CSI-SCALA-IF0003 allows remote malicious users to inject arbitrary web script or HTML via an invalid query parameter in a response from an OAuth authorization endpoint.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm smartcloud analytics log analysis 1.1.0 |
||
ibm smartcloud analytics log analysis 1.2.0 |