VulnerabilityModified
CVE-2023-33849
IBM TXSeries for Multiplatforms 8.1, 8.2, 9.1, CICS TX Standard, 11.1, CICS TX Advanced 10.1, and 11.1 could transmit sensitive information in query parameters that could be intercepted using man in the middle techniques.
LOW 3.7EPSS 0.38%
Does this matter?
Lower severity and a low EPSS score (0.38%). Track it; it rarely justifies an emergency change on its own.
Description
IBM TXSeries for Multiplatforms 8.1, 8.2, 9.1, CICS TX Standard, 11.1, CICS TX Advanced 10.1, and 11.1 could transmit sensitive information in query parameters that could be intercepted using man in the middle techniques. IBM X-Force ID: 257105.
- CVSS 3.1
- 3.7 LOWCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 0.38% probability · 31th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-311
- Affected
- ibm/cics tx · ibm/txseries for multiplatforms
- Source
- psirt@us.ibm.com
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/257105VDB Entry, Vendor Advisory
- https://www.ibm.com/support/pages/node/7001687Vendor Advisory
- https://www.ibm.com/support/pages/node/7001695Vendor Advisory
- https://www.ibm.com/support/pages/node/7001697Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/257105VDB Entry, Vendor Advisory
- https://www.ibm.com/support/pages/node/7001687Vendor Advisory
- https://www.ibm.com/support/pages/node/7001695Vendor Advisory
- https://www.ibm.com/support/pages/node/7001697Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.