Impact
A vulnerability in IBM Guardium Data Protection 12.2 allows a remote authenticated attacker to execute arbitrary code because input is not properly neutralized during web page generation. This vulnerability is a case of CWE‑79, Improper Neutralization of Input During Web Page Generation. The flaw can lead to full compromise of the protected system, allowing the attacker to read, modify, or delete data and potentially disrupt services. The issue is driven by an improper input handling weakness that, when triggered, delivers malicious content to the application’s execution context. The resulting arbitrary code execution can expose the entire environment to compromise, including all data stored in the Guardium appliance.
Affected Systems
IBM Guardium Data Protection version 12.2 on Linux platforms.
Risk and Exploitability
The vulnerability carries a CVSS score of 8.9, indicating high severity. The EPSS score is < 1% and the vulnerability is not listed in the CISA KEV catalog. Attackers must be authenticated to exploit the flaw, likely requiring valid user credentials to submit malicious input via the web interface. Once authenticated, an attacker can run arbitrary code and gain full control of the system.
OpenCVE Enrichment