Description
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.
Published: 2026-09-18
Score: 7.2 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

IBM Guardium Data Protection 12.2 contains an improper limitation of a pathname to a restricted directory, which can be exploited by a remote authenticated attacker to execute arbitrary code. The weakness is a path traversal flaw (CWE‑22). As a result, an attacker who can authenticate can run code with the privileges of the Guardium service, potentially compromising data confidentiality, integrity, and availability on the host system.

Affected Systems

The vulnerability affects IBM Guardium Data Protection version 12.2 on Linux platforms. The advisory indicates that users running this release should apply the fix provided by IBM. No other versions are listed as affected in the current advisory.

Risk and Exploitability

The severity of the issue is reflected in a CVSS score of 7.2, classifying it as high risk. EPSS data is not available, so the exact likelihood of exploitation cannot be quantified from publicly available data, but the vulnerability is not currently listed in the CISA KEV catalog. The likely attack vector is a remote authenticated session, meaning an attacker must obtain valid credentials to the Guardium interface to perform exploitation. Once authenticated, the attacker can trigger the vulnerability and gain code execution on the host.

Generated by OpenCVE AI on September 19, 2026 at 13:29 UTC.

Remediation

Vendor Solution

IBM encourages customers to update their systems promptly.  ProductVersions FixIBM Guardium Data Protection12.2 https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply the IBM Guardium Data Protection 12.2 patch as distributed through the IBM Fix Central page for SqlGuard_12.0p233_FixPack.
  • Restrict authentication to trusted users and enforce strong password policies to limit the pool of authenticated attackers.
  • Configure strict directory restrictions in Guardium’s pathname handling to eliminate unintended access to system directories.

Generated by OpenCVE AI on September 19, 2026 at 13:29 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.
Title IBM Guardium Data Protection is affected by multiple vulnerabilities.
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-22
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 7.2, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-23T03:55:37.651Z

Reserved: 2026-09-01T06:30:17.390Z

Link: CVE-2026-84086

cve-icon Vulnrichment

Updated: 2026-09-19T14:00:44.941Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-18T20:17:28.270

Modified: 2026-10-06T15:33:15.553

Link: CVE-2026-84086

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T00:15:06Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')