Impact
IBM Guardium Data Protection 12.2 contains a cross‑site request forgery fault that permits a remote attacker to cause the system to carry out actions on behalf of an authenticated user without that user’s consent. The flaw would allow malicious requests to be sent to the Guardium web interface, enabling the attacker to circumvent authentication checks, modify configuration, or read protected data. The consequence is that privileged information could be accessed or altered without proper authorization, potentially leading to a full compromise of the Guardium environment.
Affected Systems
IBM Guardium Data Protection 12.2 is affected. The issue is fixed by IBM’s 12.2 fix pack, which must be applied to all installations of this version.
Risk and Exploitability
The CVSS score of 8.8 indicates a high‑severity flaw, and the EPSS score of < 1% suggests a very low exploitation probability, while it is not listed in CISA’s KEV catalog. The likely attack path requires the attacker to reach the Guardium web interface, either by authenticating themselves or by tricking an authenticated user into visiting a malicious site that initiates a forged request. Because the flaw originates from missing CSRF protection, an attacker who can reach the vulnerable endpoint can exercise full control over the system without any additional privilege escalation.
OpenCVE Enrichment