IBM Guardium Data Protection

53 known vulnerabilities in IBM Guardium Data Protection, 13 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-84842 CVSS 8.1 high IBM Guardium Data Protection 12.2 is vulnerable to path traversal and arbitrary file deletion in the Datasource REST component. An…
  • CVE-2026-84440 CVSS 8.8 high IBM Guardium Data Protection 12.2 is vulnerable to command injection in the SNMP alert notification functionality. An authenticated…
  • CVE-2026-84436 CVSS 9.1 critical IBM Guardium Data Protection 12.2 is vulnerable to command injection in the certificate export CLI functionality, allowing a privileged…
  • CVE-2026-84422 CVSS 7.2 high IBM Guardium Data Protection 12.2 is vulnerable to command injection in the CLI certificate SMIME recipient deletion functionality…
  • CVE-2026-84882 CVSS 7.5 high IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the Universal Connector Oracle Wallet upload component. An…
  • CVE-2026-84862 CVSS 7.2 high IBM Guardium Data Protection 12.2 is vulnerable to insecure deserialization in the Quartz JDBC job store. An authenticated attacker could…
  • CVE-2026-85542 CVSS 8.8 high IBM Guardium Data Protection 12.2 is affected by a command injection vulnerability in the GIM bundle import functionality. An…
  • CVE-2026-85029 CVSS 7.5 high IBM Guardium Data Protection 12.2 could allow a remote attacker to obtain sensitive information, delete arbitrary files, or execute…
  • CVE-2026-84893 CVSS 7.6 high IBM Guardium Data Protection 12.2 is vulnerable to SQL injection in the PESI service. An authenticated attacker could exploit this…
  • CVE-2026-84884 CVSS 7.5 high IBM Guardium Data Protection 12.2 stores internal REST service-account passwords in a reversible plaintext-equivalent format. An…
  • CVE-2026-4921 CVSS 2.7 low IBM Guardium Data Protection 12.2 could allow an administrative user to obtain sensitive information when a detailed technical error…
  • CVE-2026-84241 CVSS 8.1 high IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper authorization.
  • CVE-2026-84239 CVSS 7.6 high IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper…
  • CVE-2026-84108 CVSS 8.1 high IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of input during…
  • CVE-2026-84106 CVSS 8.9 high IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of…
  • CVE-2026-84105 CVSS 7.7 high IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper…
  • CVE-2026-84089 CVSS 7.8 high IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
  • CVE-2026-84086 CVSS 7.2 high IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a…
  • CVE-2026-84085 CVSS 8.1 high IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary OS commands due to improper neutralization of special…
  • CVE-2026-84084 CVSS 8.8 high IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF)…
  • CVE-2026-84083 CVSS 7.8 high IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector…
  • CVE-2026-84082 CVSS 9.8 critical IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of…
  • CVE-2026-84081 CVSS 8.1 high IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper certificate validation.
  • CVE-2026-84078 CVSS 9.9 critical IBM Guardium Data Protection 12.2 is vulnerable to a missing authentication vulnerability in the LoadBalancerServlet. An unauthenticated…
  • CVE-2026-84077 CVSS 8.1 high IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery…
  • CVE-2026-84076 CVSS 7.6 high IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.
  • CVE-2026-84075 CVSS 9.9 critical IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to missing authentication for the…
  • CVE-2026-84074 CVSS 8.9 high IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of…
  • CVE-2026-84073 CVSS 9.1 critical IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper…
  • CVE-2026-84071 CVSS 7.2 high IBM Guardium Data Protection 12.2 is vulnerable to OS command injection in the Universal Connector plugin upload functionality. A…