CVE-2022-34316: IBM CICS TX information disclosure
IBM CICS TX 11.1 does not neutralize or incorrectly neutralizes web scripting syntax in HTTP headers that can be used by web browser components that can process raw headers. IBM X-Force ID: 229452.
Other sources
IBM CICS TX does not neutralize or incorrectly neutralizes web scripting syntax in HTTP headers that can be used by web browser components that can process raw headers.
— IBM
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34316?
The severity of CVE-2022-34316 is medium with a severity value of 5.3.
What is the vulnerability description of CVE-2022-34316?
CVE-2022-34316 is a vulnerability in IBM CICS TX 11.1 that allows web scripting syntax in HTTP headers which can be exploited by web browser components.
Which versions of IBM CICS TX are affected by CVE-2022-34316?
IBM CICS TX 11.1 is affected by CVE-2022-34316.
How can the vulnerability be fixed in IBM CICS TX 11.1?
To fix CVE-2022-34316 in IBM CICS TX 11.1, apply the patches and updates provided by IBM.
Are there any references available for more information about CVE-2022-34316?
Yes, you can find more information about CVE-2022-34316 at the following references: [link1], [link2], [link3].