IBM CICS TX Standard 11.1 and IBM CICS TX Advanced 10.1 and 11.1 could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the gets function.
History

Thu, 08 May 2025 22:15:00 +0000

Type Values Removed Values Added
Description IBM CICS TX Standard 11.1 and IBM CICS TX Advanced 10.1 and 11.1 could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the gets function.
Title IBM CICS TX code execution
First Time appeared Ibm
Ibm cics Tx
Weaknesses CWE-242
CPEs cpe:2.3:a:ibm:cics_tx:10.1.0.0:*:*:*:advanced:linux:*:*
cpe:2.3:a:ibm:cics_tx:11.1.0.0:*:*:*:advanced:linux:*:*
cpe:2.3:a:ibm:cics_tx:11.1.0.0:*:*:*:standard:linux:*:*
Vendors & Products Ibm
Ibm cics Tx
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2025-05-08T21:55:41.116Z

Updated: 2025-05-08T21:55:41.116Z

Reserved: 2025-02-15T00:10:22.206Z

Link: CVE-2025-1331

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-05-08T22:15:18.320

Modified: 2025-05-08T22:15:18.320

Link: CVE-2025-1331

cve-icon Redhat

No data.