Description
IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
Published: 2026-09-18
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Local Privilege Escalation
Action: Immediate Patch
AI Analysis

Impact

IBM Guardium Data Protection 12.2 contains an improper privilege‑management flaw that allows a local attacker to elevate their privileges to that of the system or a higher‑privileged user, potentially enabling complete takeover of the protected environment. The vulnerability is a classic privilege escalation weakness (CWE‑269). An attacker who can run code locally on the Guardium platform can exploit the flaw without authentication, leading to full system control.

Affected Systems

The flaw impacts IBM Guardium Data Protection version 12.2 deployed on Linux hosts. Users running the 12.2 release without the patch are at risk.

Risk and Exploitability

The CVSS score of 7.8 indicates a high‑severity vulnerability. Because the attack vector is local, the risk is confined to hosts that an attacker can access directly, but such access may be easier in shared or compromised environments. The EPSS score is not reported, and the vulnerability is not listed in CISA’s KEV catalog, suggesting no known widespread exploitation yet. Nonetheless, the potential for complete system compromise warrants urgent remediation.

Generated by OpenCVE AI on September 19, 2026 at 13:55 UTC.

Remediation

Vendor Solution

IBM encourages customers to update their systems promptly.  ProductVersions FixIBM Guardium Data Protection12.2 https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply IBM’s 12.2 Update (7A1130 or newer) available from IBM Fix Central: https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc
  • Restrict local access to the Guardium server by removing unnecessary user accounts and enforcing least‑privilege policies for any accounts that remain.
  • Verify that privilege escalation can no longer occur by reproducing the attack scenario in a controlled test environment or conducting a review of system logs for privilege‑escalation patterns.

Generated by OpenCVE AI on September 19, 2026 at 13:55 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
Title IBM Guardium Data Protection is affected by multiple vulnerabilities.
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-269
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-23T03:55:36.922Z

Reserved: 2026-09-01T06:32:12.790Z

Link: CVE-2026-84089

cve-icon Vulnrichment

Updated: 2026-09-19T14:00:32.586Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-18T20:17:28.390

Modified: 2026-10-06T15:33:07.950

Link: CVE-2026-84089

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:36:03Z

Weaknesses
  • CWE-269

    Improper Privilege Management