Vulnerabilities > IBM > Cics TX
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-08-01 | CVE-2022-33955 | OS Command Injection vulnerability in IBM Cics TX 11.1 IBM CICS TX 11.1 could allow allow an attacker with physical access to the system to execute code due using a back and refresh attack. | 6.8 |
2022-08-01 | CVE-2022-34161 | Cross-Site Request Forgery (CSRF) vulnerability in IBM Cics TX 11.1 IBM CICS TX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. | 8.8 |
2022-08-01 | CVE-2022-34162 | Improper Restriction of Rendered UI Layers or Frames vulnerability in IBM Cics TX 11.1 IBM CICS TX 11.1 could allow a remote attacker to hijack the clicking action of the victim. | 6.1 |
2022-08-01 | CVE-2022-34163 | Cross-site Scripting vulnerability in IBM Cics TX 11.1 IBM CICS TX 11.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. | 6.1 |
2022-08-01 | CVE-2022-34164 | Improper Input Validation vulnerability in IBM Cics TX 11.1 IBM CICS TX 11.1 could allow a local user to impersonate another legitimate user due to improper input validation. | 5.5 |
2022-08-01 | CVE-2022-34307 | Missing Encryption of Sensitive Data vulnerability in IBM Cics TX 11.1 IBM CICS TX 11.1 does not set the secure attribute on authorization tokens or session cookies. | 4.3 |
2022-07-08 | CVE-2022-34160 | Cross-site Scripting vulnerability in IBM Cics TX 11.1 IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTML injection. | 5.4 |
2022-07-08 | CVE-2022-34166 | Cross-site Scripting vulnerability in IBM Cics TX 11.1 IBM CICS TX Standard and Advanced 11.1 is vulnerable to cross-site scripting. | 5.4 |
2022-07-08 | CVE-2022-34167 | Cross-site Scripting vulnerability in IBM Cics TX 11.1 IBM CICS TX Standard and Advanced 11.1 is vulnerable to stored cross-site scripting. | 5.4 |
2022-07-08 | CVE-2022-34306 | Cross-site Scripting vulnerability in IBM Cics TX 11.1 IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. | 5.4 |