Vulnerability Monitor

The vendors, products, and vulnerabilities you care about
cics_tx Vendor: ibm

About This Product

cics_tx is a software product offered by ibm. This product is widely deployed in production environments, making vulnerability monitoring essential for organizations relying on it. Security vulnerabilities in products of this category can affect system availability, data confidentiality, and integrity across entire networks. The moderate vulnerability count reflects ongoing security research and responsible disclosure practices. Regular assessment of known vulnerabilities and timely patching are fundamental components of responsible system administration for any deployment of this software.

Vulnerability Landscape Summary

SecUtils has identified 46 known vulnerabilities affecting ibm cics_tx. This includes 1 critical-severity issue and 6 high-severity issues that warrant immediate attention. Vulnerabilities in this product have been disclosed spanning from 2022 to 2025, indicating a recent active security attention. 36 medium-severity issues and 3 low-severity issues complete the vulnerability landscape. Organizations should prioritize patching based on deployment context, asset criticality, and exploitation likelihood rather than severity alone.

Known Vulnerabilities
ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2022-31767 2022-06-24 2024-11-21 9.8 10.0 Likely
CVE-2022-34160 2022-07-08 2024-11-21 5.4 5.8 Likely
CVE-2022-34166 2022-07-08 2024-11-21 5.4 3.5 Unknown
CVE-2022-34167 2022-07-08 2024-11-21 5.4 3.5 Unknown
CVE-2022-34306 2022-07-08 2024-11-21 5.4 5.5 Likely
CVE-2022-33955 2022-08-01 2024-11-21 6.8 - -
CVE-2022-34161 2022-08-01 2024-11-21 8.8 - -
CVE-2022-34162 2022-08-01 2024-11-21 6.1 - -
CVE-2022-34163 2022-08-01 2024-11-21 6.1 - -
CVE-2022-34164 2022-08-01 2024-11-21 5.5 - -
CVE-2022-34307 2022-08-01 2024-11-21 4.3 - -
CVE-2022-34308 2022-10-07 2024-11-21 5.5 - -
CVE-2022-34312 2022-11-14 2024-11-21 4.0 - -
CVE-2022-34313 2022-11-14 2024-11-21 4.3 - -
CVE-2022-34319 2022-11-14 2024-11-21 5.9 - -
CVE-2022-34329 2022-11-14 2024-11-21 5.3 - -
CVE-2022-38705 2022-11-14 2024-11-21 5.3 - -
CVE-2022-34314 2022-11-14 2024-11-21 4.0 - -
CVE-2022-34315 2022-11-14 2024-11-21 5.4 - -
CVE-2022-34316 2022-11-14 2024-11-21 3.7 - -
CVE-2022-34317 2022-11-14 2024-11-21 5.4 - -
CVE-2022-34320 2022-11-14 2024-11-21 5.9 - -
CVE-2022-34318 2022-12-12 2025-04-30 5.4 - -
CVE-2023-33848 2023-06-07 2024-11-21 4.9 - -
CVE-2023-33849 2023-06-07 2024-11-21 3.7 - -
CVE-2023-33846 2023-06-08 2024-11-21 5.4 - -
CVE-2023-33847 2023-06-08 2024-11-21 3.7 - -
CVE-2023-33850 2023-08-22 2025-11-03 7.5 - -
CVE-2023-42031 2023-10-25 2024-11-21 4.9 - -
CVE-2023-42027 2023-11-03 2024-11-21 4.3 - -
CVE-2023-42029 2023-11-03 2024-11-21 4.8 - -
CVE-2023-43018 2023-11-03 2024-11-21 5.9 - -
CVE-2023-38363 2023-11-13 2024-11-21 4.3 - -
CVE-2023-38364 2023-11-13 2024-11-21 6.1 - -
CVE-2023-38361 2023-11-18 2024-11-21 5.9 - -
CVE-2022-34310 2024-02-12 2024-11-21 5.9 - -
CVE-2022-34309 2024-02-12 2024-11-21 5.9 - -
CVE-2022-34311 2024-02-12 2024-11-21 4.3 - -
CVE-2023-38362 2024-03-04 2025-01-07 5.3 - -
CVE-2023-38360 2024-03-04 2025-01-07 6.1 - -
CVE-2024-41744 2024-11-01 2025-06-18 6.5 - -
CVE-2024-41745 2024-11-01 2024-11-14 6.1 - -
CVE-2024-41746 2025-01-16 2025-08-14 7.2 - -
CVE-2025-1329 2025-05-08 2025-06-05 7.8 - -
CVE-2025-1330 2025-05-08 2025-06-05 7.8 - -
CVE-2025-1331 2025-05-08 2025-06-05 7.8 - -

How SecUtils Interprets Product Data

SecUtils normalizes and enriches National Vulnerability Database (NVD) records for ibm cics_tx by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and structuring the data for rapid analysis and asset correlation. For every vulnerability listed, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference information to enable organizations to prioritize patching and risk assessment efficiently. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for vulnerability management and security operations.