Vulnerabilities > IBM > Cics TX

DATE CVE VULNERABILITY TITLE RISK
2024-11-01 CVE-2024-41745 Cross-site Scripting vulnerability in IBM Cics TX 11.1.0.0
IBM CICS TX Standard is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
6.1
2024-03-04 CVE-2023-38360 Unspecified vulnerability in IBM Cics TX 10.1
IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting.
network
low complexity
ibm
6.1
2024-03-04 CVE-2023-38362 Information Exposure Through Discrepancy vulnerability in IBM Cics TX 10.1
IBM CICS TX Advanced 10.1 could disclose sensitive information to a remote attacker due to observable discrepancy in HTTP responses.
network
low complexity
ibm CWE-203
5.3
2024-02-12 CVE-2022-34309 Unspecified vulnerability in IBM Cics TX 11.1
IBM CICS TX Standard and Advanced 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm
7.5
2024-02-12 CVE-2022-34311 Unspecified vulnerability in IBM Cics TX 11.1
IBM CICS TX Standard and Advanced 11.1 could allow a user with physical access to the web browser to gain access to the user's session due to insufficiently protected credentials.
low complexity
ibm
4.3
2024-02-12 CVE-2022-34310 Unspecified vulnerability in IBM Cics TX 11.1/11.1.0.0
IBM CICS TX Standard and Advanced 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm
7.5
2023-11-18 CVE-2023-38361 Unspecified vulnerability in IBM Cics TX 10.1
IBM CICS TX Advanced 10.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
low complexity
ibm
7.5
2023-11-13 CVE-2023-38363 Unspecified vulnerability in IBM Cics TX 10.1
IBM CICS TX Advanced 10.1 does not set the secure attribute on authorization tokens or session cookies.
network
low complexity
ibm
4.3
2023-11-13 CVE-2023-38364 Unspecified vulnerability in IBM Cics TX 10.1
IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting.
network
low complexity
ibm
6.1
2023-11-03 CVE-2023-42027 Cross-Site Request Forgery (CSRF) vulnerability in IBM Cics TX and Txseries for Multiplatforms
IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
low complexity
ibm CWE-352
8.8