Description
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
Published: 2026-09-18
Score: 9.9 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Remote SQL Injection
Action: Immediate Patch
AI Analysis

Impact

IBM Guardium Data Protection 12.2 contains an SQL injection flaw caused by improper neutralization of special elements in an SQL command. This weakness allows a remote authenticated attacker to inject arbitrary SQL statements, potentially enabling unauthorized data read or write operations, data exfiltration, or further compromise of the underlying database system.

Affected Systems

The issue affects IBM Guardium Data Protection version 12.2, specifically the 12.2.0 build running on Linux. Customers should apply the IBM Fix Pack SqlGuard_12.0p233_FixPack available on the IBM Support site linked in the advisory.

Risk and Exploitability

The CVSS score of 9.9 denotes critical severity, and the EPSS score of less than 1% indicates a low likelihood of being exploited in the wild. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attacker must be authenticated and can launch the attack from a remote location, making the exploit possible over the network. The combination of remote access, authentication requirements, and high impact results in a significant risk for unpatched systems.

Generated by OpenCVE AI on September 19, 2026 at 15:19 UTC.

Remediation

Vendor Solution

IBM encourages customers to update their systems promptly.  ProductVersions FixIBM Guardium Data Protection12.2 https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply the IBM Guardium Data Protection 12.2 fix pack (SqlGuard_12.0p233_FixPack) provided by IBM’s support site.
  • Restrict database user privileges to the least necessary, ensuring authenticated users cannot execute arbitrary SQL commands.
  • Enable comprehensive logging and monitoring of database activity, and conduct regular audits to detect potential injection attempts.

Generated by OpenCVE AI on September 19, 2026 at 15:19 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
Title IBM Guardium Data Protection is affected by multiple vulnerabilities.
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-89
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-23T03:55:53.061Z

Reserved: 2026-09-01T06:01:19.664Z

Link: CVE-2026-84064

cve-icon Vulnrichment

Updated: 2026-09-19T14:04:00.941Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-18T20:17:26.440

Modified: 2026-10-06T16:26:26.003

Link: CVE-2026-84064

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T02:15:16Z

Weaknesses
  • CWE-89

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')