Show filters
43 Total Results
Displaying 1-10 of 43
Sort by:
Attacker Value
Unknown

CVE-2024-41746

Disclosure Date: January 16, 2025 (last updated February 27, 2025)
IBM CICS TX Advanced 10.1, 11.1, and Standard 11.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Attacker Value
Unknown

CVE-2024-41745

Disclosure Date: November 01, 2024 (last updated February 27, 2025)
IBM CICS TX Standard is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Attacker Value
Unknown

CVE-2024-41744

Disclosure Date: November 01, 2024 (last updated February 27, 2025)
IBM CICS TX Standard 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
Attacker Value
Unknown

CVE-2023-38360

Disclosure Date: March 04, 2024 (last updated February 26, 2025)
IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 260769.
Attacker Value
Unknown

CVE-2023-38362

Disclosure Date: March 04, 2024 (last updated February 26, 2025)
IBM CICS TX Advanced 10.1 could disclose sensitive information to a remote attacker due to observable discrepancy in HTTP responses. IBM X-Force ID: 260814.
Attacker Value
Unknown

CVE-2022-34311

Disclosure Date: February 12, 2024 (last updated February 26, 2025)
IBM CICS TX Standard and Advanced 11.1 could allow a user with physical access to the web browser to gain access to the user's session due to insufficiently protected credentials. IBM X-Force ID: 229446.
Attacker Value
Unknown

CVE-2022-34309

Disclosure Date: February 12, 2024 (last updated February 26, 2025)
IBM CICS TX Standard and Advanced 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 229440.
Attacker Value
Unknown

CVE-2022-34310

Disclosure Date: February 12, 2024 (last updated February 26, 2025)
IBM CICS TX Standard and Advanced 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 229441.
Attacker Value
Unknown

CVE-2023-38361

Disclosure Date: November 18, 2023 (last updated February 25, 2025)
IBM CICS TX Advanced 10.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 260770.
Attacker Value
Unknown

CVE-2023-38364

Disclosure Date: November 13, 2023 (last updated February 25, 2025)
IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 260821.