First published: Mon Oct 31 2022(Updated: )
IBM CICS TX 11.1 Standard and Advanced could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a victim to a phishing site. IBM X-Force ID: 234172.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM CICS TX | =11.1 | |
IBM CICS TX | =11.1 | |
IBM CICS TX Advanced | <=11.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-38705.
The severity rating of CVE-2022-38705 is medium (6.1).
IBM CICS TX Standard and Advanced versions 11.1 are affected by CVE-2022-38705.
CVE-2022-38705 allows a remote attacker to bypass security restrictions and redirect victims to a phishing site.
To fix CVE-2022-38705, apply the patch provided by IBM CICS TX on Cloud.