VendorsIBMcics_txall versions
Vulnerabilities

IBM Cics Tx

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

46CVEs
CVE-2022-31767
IBM CICS TX Standard and Advanced 11.1 could allow a remote attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 227980.
Published 2022-06-24 · Modified
10.0EPSS 0.051
CVE-2022-34161
IBM CICS TX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 229331.
Published 2022-08-01 · Modified
8.8EPSS 0.005
CVE-2023-42027
IBM CICS TX cross-site request forgery
Published 2023-11-02 · Modified
8.8EPSS 0.003
CVE-2024-41744
IBM CICS TX Standard cross-site request forgery
Published 2024-11-01 · Analyzed
8.8EPSS 0.002
CVE-2025-1329
IBM CICS TX code execution
Published 2025-05-08 · Analyzed
7.8EPSS 0.003
CVE-2025-1331
IBM CICS TX code execution
Published 2025-05-08 · Analyzed
7.8EPSS 0.003
CVE-2025-1330
IBM CICS TX code execution
Published 2025-05-08 · Analyzed
7.8EPSS 0.003
CVE-2023-33850
IBM GSKit-Crypto information disclosure
Published 2023-08-22 · Modified
7.5EPSS 0.012
CVE-2022-34320
IBM CICS TX information disclosure
Published 2022-11-14 · Modified
7.5EPSS 0.005
CVE-2022-34319
IBM CICS TX information disclosure
Published 2022-11-14 · Modified
7.5EPSS 0.005
CVE-2022-34310
IBM CICS TX information disclosure
Published 2024-02-12 · Modified
7.5EPSS 0.005
CVE-2022-34309
IBM CICS TX information disclosure
Published 2024-02-12 · Modified
7.5EPSS 0.005
CVE-2023-43018
IBM CICS TX privilege escalation
Published 2023-11-02 · Modified
7.5EPSS 0.004
CVE-2023-38361
IBM CICS TX Advanced information disclosure
Published 2023-11-18 · Modified
7.5EPSS 0.004
CVE-2024-41746
IBM CICS TX cross-site scripting
Published 2025-01-16 · Analyzed
7.2EPSS 0.002
CVE-2022-33955
IBM CICS TX 11.1 could allow allow an attacker with physical access to the system to execute code due using a back and refresh attack. IBM X-Force ID: 229312.
Published 2022-08-01 · Modified
6.8EPSS 0.006
CVE-2023-33848
IBM CICS TX information disclosure
Published 2023-06-07 · Modified
6.5EPSS 0.008
CVE-2022-34308
IBM CICS TX 11.1 could allow a local user to cause a denial of service due to improper load handling. IBM X-Force ID: 229437.
Published 2022-10-07 · Modified
6.2EPSS 0.002
CVE-2022-34162
IBM CICS TX 11.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 229332.
Published 2022-08-01 · Modified
6.1EPSS 0.009
CVE-2022-34163
IBM CICS TX 11.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 229333.
Published 2022-08-01 · Modified
6.1EPSS 0.008
CVE-2022-38705
IBM CICS TX phishing
Published 2022-11-14 · Modified
6.1EPSS 0.007
CVE-2022-34318
IBM CICS TX clickjacking
Published 2022-11-14 · Modified
6.1EPSS 0.007
CVE-2023-38364
IBM CICS TX Advanced cross-site scripting
Published 2023-11-13 · Modified
6.1EPSS 0.005
CVE-2023-38360
IBM CICS TX cross-site scripting
Published 2024-03-04 · Analyzed
6.1EPSS 0.003
CVE-2024-41745
IBM CICS TX Standard cross-site scripting
Published 2024-11-01 · Analyzed
6.1EPSS 0.003
CVE-2022-34164
IBM CICS TX 11.1 could allow a local user to impersonate another legitimate user due to improper input validation. IBM X-Force ID: 229338.
Published 2022-08-01 · Modified
5.9EPSS 0.002
CVE-2022-34160
IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 229330.
Published 2022-07-08 · Modified
5.8EPSS 0.011
CVE-2022-34306
IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 229435.
Published 2022-07-08 · Modified
5.5EPSS 0.007
CVE-2022-34166
IBM CICS TX Standard and Advanced 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229430.
Published 2022-07-08 · Modified
5.4EPSS 0.007
CVE-2022-34167
IBM CICS TX Standard and Advanced 11.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229432.
Published 2022-07-08 · Modified
5.4EPSS 0.007
CVE-2022-34315
IBM CICS TX cross-site scripting
Published 2022-11-14 · Modified
5.4EPSS 0.005
CVE-2022-34317
IBM CICS TX cross-site scripting
Published 2022-11-14 · Modified
5.4EPSS 0.005
CVE-2023-33846
IBM CICS TX cross-site scripting
Published 2023-06-08 · Modified
5.4EPSS 0.005
CVE-2023-42029
IBM CICS TX cross-site scripting
Published 2023-11-02 · Modified
5.4EPSS 0.004
CVE-2022-34329
IBM CICS TX information disclosure
Published 2022-11-14 · Modified
5.3EPSS 0.007
CVE-2022-34316
IBM CICS TX information disclosure
Published 2022-11-14 · Modified
5.3EPSS 0.007
CVE-2023-38362
IBM CICS TX information disclosure
Published 2024-03-04 · Analyzed
5.3EPSS 0.005
CVE-2023-42031
IBM CICS TX denial of service
Published 2023-10-24 · Modified
4.9EPSS 0.010
CVE-2022-34313
IBM CICS TX Standard is vulnerable to allowing attackers access to an application via insecure session cookies
Published 2022-11-14 · Modified
4.3EPSS 0.006
CVE-2023-38363
IBM CICS TX information disclosure
Published 2023-11-13 · Modified
4.3EPSS 0.006
1 / 2Next →