CVE-2022-38705: IBM CICS TX phishing
IBM CICS TX 11.1 Standard and Advanced could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a victim to a phishing site. IBM X-Force ID: 234172.
Other sources
IBM CICS TX Standard and Advanced could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a victim to a phishing site.
— IBM
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-38705.
What is the severity rating of CVE-2022-38705?
The severity rating of CVE-2022-38705 is medium (6.1).
What software is affected by CVE-2022-38705?
IBM CICS TX Standard and Advanced versions 11.1 are affected by CVE-2022-38705.
What is the impact of CVE-2022-38705?
CVE-2022-38705 allows a remote attacker to bypass security restrictions and redirect victims to a phishing site.
How do I fix CVE-2022-38705?
To fix CVE-2022-38705, apply the patch provided by IBM CICS TX on Cloud.