Configuration in IBM CICS TX Advanced and IBM CICS TX Standard - CVE-2022-34318
Published: November 21, 2022 / Updated: November 21, 2022
Vulnerability details
The vulnerability allows a remote attacker to perform clickjacking attack.
The vulnerability exists due to application does not set necessary HTTP headers to protect itself against clickjacking attacks. A remote attacker can trick the victim into visiting a malicious website and hijacking the clicking action of the victim.
Affected software
IBM CICS TX Standard
How to mitigate CVE-2022-34318
IBM CICS TX Standard - update to 11.1.0.0 ifix5