CVE-2022-34166: XSS
IBM CICS TX is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Other sources
IBM CICS TX Standard and Advanced 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229430.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM CICS TX vulnerability?
The vulnerability ID for this IBM CICS TX vulnerability is CVE-2022-34166.
What is the severity level of CVE-2022-34166?
The severity level of CVE-2022-34166 is medium.
What is the impact of the IBM CICS TX vulnerability?
The vulnerability allows users to embed arbitrary JavaScript code in the Web UI, potentially leading to credentials disclosure within a trusted session.
How can I fix the IBM CICS TX vulnerability?
To fix the IBM CICS TX vulnerability, apply the patch provided by IBM.
Where can I find more information about CVE-2022-34166?
You can find more information about CVE-2022-34166 on the IBM X-Force ID page and the IBM support pages.