HTTP Header Injection Vulnerability in IBM CICS TX 11.1
CVE-2022-34163
5.4MEDIUM
What is CVE-2022-34163?
IBM CICS TX 11.1 has a vulnerability due to inadequate validation of HOST headers, permitting attackers to inject malicious HTTP headers. This flaw can result in various attacks such as cross-site scripting, cache poisoning, or session hijacking, potentially compromising sensitive data and system integrity. Users are advised to review the security updates from IBM to mitigate these risks.
Affected Version(s)
CICS TX Advanced 11.1
CICS TX Standard 11.1