Description
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF) vulnerability.
Published: 2026-09-18
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Security bypass
Action: Apply Patch
AI Analysis

Impact

IBM Guardium Data Protection 12.2 contains a cross‑site request forgery fault that permits a remote attacker to cause the system to carry out actions on behalf of an authenticated user without that user’s consent. The flaw would allow malicious requests to be sent to the Guardium web interface, enabling the attacker to circumvent authentication checks, modify configuration, or read protected data. The consequence is that privileged information could be accessed or altered without proper authorization, potentially leading to a full compromise of the Guardium environment.

Affected Systems

IBM Guardium Data Protection 12.2 is affected. The issue is fixed by IBM’s 12.2 fix pack, which must be applied to all installations of this version.

Risk and Exploitability

The CVSS score of 8.8 indicates a high‑severity flaw, and the EPSS score of < 1% suggests a very low exploitation probability, while it is not listed in CISA’s KEV catalog. The likely attack path requires the attacker to reach the Guardium web interface, either by authenticating themselves or by tricking an authenticated user into visiting a malicious site that initiates a forged request. Because the flaw originates from missing CSRF protection, an attacker who can reach the vulnerable endpoint can exercise full control over the system without any additional privilege escalation.

Generated by OpenCVE AI on September 19, 2026 at 14:52 UTC.

Remediation

Vendor Solution

IBM encourages customers to update their systems promptly.  ProductVersions FixIBM Guardium Data Protection12.2 https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply the IBM Guardium Data Protection 12.2 fix pack referenced by IBM
  • Restrict access to the Guardium web interface to trusted IPs or internal networks to reduce exposure of the vulnerable endpoint
  • Implement or enforce CSRF protection mechanisms, such as anti‑CSRF tokens or Referer/Origin validation, to mitigate similar vulnerabilities

Generated by OpenCVE AI on September 19, 2026 at 14:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF) vulnerability.
Title IBM Guardium Data Protection is affected by multiple vulnerabilities.
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-352
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-23T03:55:57.063Z

Reserved: 2026-09-01T06:24:35.569Z

Link: CVE-2026-84084

cve-icon Vulnrichment

Updated: 2026-09-18T20:18:10.559Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-18T20:17:28.010

Modified: 2026-10-06T15:33:29.187

Link: CVE-2026-84084

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T02:15:16Z

Weaknesses
  • CWE-352

    Cross-Site Request Forgery (CSRF)