IBM CICS TX 11.1 does not neutralize or incorrectly neutralizes web scripting syntax in HTTP headers that can be used by web browser components that can process raw headers. IBM X-Force ID: 229452.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/6833178 | Patch Vendor Advisory |
https://www.ibm.com/support/pages/node/6833176 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/229452 | VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-11-14 11:15
Updated : 2022-11-16 11:07
NVD link : CVE-2022-34316
Mitre link : CVE-2022-34316
JSON object : View
CWE
CWE-116
Improper Encoding or Escaping of Output
Products Affected
ibm
- cics_tx