Vulnerability Details CVE-2023-42029
IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 266059.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.6%
CVSS Severity
CVSS v3 Score 4.8
Products affected by CVE-2023-42029
-
cpe:2.3:a:ibm:cics_tx:10.1
-
cpe:2.3:a:ibm:cics_tx:11.1
-
cpe:2.3:a:ibm:txseries_for_multiplatforms:8.1
-
cpe:2.3:a:ibm:txseries_for_multiplatforms:8.2
-
cpe:2.3:a:ibm:txseries_for_multiplatforms:9.1
-
-
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-