CVE-2022-31767 CRITICAL

CVE-2022-31767

Vendor Ibm
Product CICS TX Advanced
Published June 24, 2022
Last update September 16, 2024

CVSS base score

9.8/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.0/AV:N/C:H/S:U/A:H/AC:L/PR:N/I:H/UI:N/RL:O/E:U/RC:C

What the vulnerability does

01Description

IBM CICS TX Standard and Advanced 11.1 could allow a remote attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 227980.

Key dates

02Disclosure timeline

June 24, 2022 CVE published
September 16, 2024 Record updated