Impact
IBM Guardium Data Protection 12.2 contains a stored cross‑site scripting vulnerability in the Quick Search results grid. An attacker who can influence monitored database traffic, without needing to log in, can inject malicious script that will execute in the browser of any authenticated Guardium user. This allows the attacker to steal session information, alter the user interface, or perform other actions under the victim’s privileges. The flaw is classified as CWE‑79.
Affected Systems
The affected product is IBM Guardium Data Protection version 12.2. The provided fix pack addresses this vulnerability.
Risk and Exploitability
The CVSS score of 9.3 indicates a critical severity. EPSS data is not available, so the exact exploitation probability is unknown, but the lack of authentication required for exploitation suggests a high likelihood if the conditions are met. The vulnerability is not listed in CISA’s KEV catalog. An attacker can trigger the flaw by manipulating database traffic observed by the Guardium appliance, making the attack path accessible to anyone who can cause such traffic even without initial authentication.
OpenCVE Enrichment