Description
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of input during web page generation.
Published: 2026-09-18
Score: 8.1 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

The vulnerability arises from improper neutralization of user-supplied input when generating web pages, allowing a remote attacker to inject and execute arbitrary code. Because the input is not escaped, the attacker can run code within the application’s context, leading to a remote code execution scenario. The weakness is an example of reflected XSS (CWE-79).

Affected Systems

IBM Guardium Data Protection version 12.2, running on Linux platforms, is affected. Users of this version who expose the web interface to the network are at risk.

Risk and Exploitability

The CVSS score of 8.1 indicates high severity. EPSS is not available, so the present exploitation probability is unknown. The vulnerability is not listed in the CISA KEV catalog. The likely attack vector is remote, through the publicly-accessible web interface. No special conditions or user privileges are required as described.

Generated by OpenCVE AI on September 19, 2026 at 13:27 UTC.

Remediation

Vendor Solution

IBM encourages customers to update their systems promptly.  ProductVersions FixIBM Guardium Data Protection12.2 https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply the IBM FixPack (SqlGuard_12.0p233_FixPack) targeted for Guardium 12.2 to patch the code that performs neutralization of input during web page generation.
  • If the patch cannot be applied immediately, restrict external access to Guardium’s web interface by configuring firewalls or host-based ACLs so only trusted IP addresses can reach it, thereby reducing the attack surface.
  • Enforce proper output encoding for all user-supplied data on the web interface, ensuring that no HTML or script content can be injected, which aligns with the remediation for CWE‑79.

Generated by OpenCVE AI on September 19, 2026 at 13:27 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of input during web page generation.
Title IBM Guardium Data Protection is affected by multiple vulnerabilities.
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-79
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-19T14:01:28.656Z

Reserved: 2026-09-01T07:07:16.265Z

Link: CVE-2026-84108

cve-icon Vulnrichment

Updated: 2026-09-19T14:00:08.033Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-18T20:17:28.763

Modified: 2026-10-06T15:32:38.493

Link: CVE-2026-84108

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:28:22Z

Weaknesses
  • CWE-79

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')