CVE-2025-1331: IBM CICS TX code execution
IBM CICS TX and IBM TXSeries for Multiplatforms could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the gets function.
Other sources
IBM CICS TX Standard 11.1 and IBM CICS TX Advanced 10.1 and 11.1 could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the gets function.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1331?
CVE-2025-1331 has a high severity rating due to its potential to allow local users to execute arbitrary code.
How do I fix CVE-2025-1331?
To fix CVE-2025-1331, you should apply the latest patches provided by IBM for affected versions of CICS TX.
What versions are affected by CVE-2025-1331?
CVE-2025-1331 affects IBM CICS TX Standard version 11.1 and IBM CICS TX Advanced versions 10.1 and 11.1.
Who is vulnerable to CVE-2025-1331?
Local users of IBM CICS TX and IBM TXSeries for Multiplatforms are vulnerable to CVE-2025-1331.
What vulnerabilities does CVE-2025-1331 exploit?
CVE-2025-1331 exploits the unsafe use of the gets function, which can lead to arbitrary code execution.