Description
IBM Guardium Data Protection 12.2 IBM Security Guardium Data Protection is vulnerable to stored cross-site scripting (XSS) in the Quick Search results grid. An unauthenticated attacker who can influence monitored database traffic could execute malicious script in the browser of an authenticated Guardium user.
Published: 2026-10-08
Score: 9.3 Critical
EPSS: n/a
KEV: No
Impact: Cross‑Site Scripting affecting authenticated Guardium users
Action: Patch
AI Analysis

Impact

IBM Guardium Data Protection 12.2 contains a stored cross‑site scripting vulnerability in the Quick Search results grid. An attacker who can influence monitored database traffic, without needing to log in, can inject malicious script that will execute in the browser of any authenticated Guardium user. This allows the attacker to steal session information, alter the user interface, or perform other actions under the victim’s privileges. The flaw is classified as CWE‑79.

Affected Systems

The affected product is IBM Guardium Data Protection version 12.2. The provided fix pack addresses this vulnerability.

Risk and Exploitability

The CVSS score of 9.3 indicates a critical severity. EPSS data is not available, so the exact exploitation probability is unknown, but the lack of authentication required for exploitation suggests a high likelihood if the conditions are met. The vulnerability is not listed in CISA’s KEV catalog. An attacker can trigger the flaw by manipulating database traffic observed by the Guardium appliance, making the attack path accessible to anyone who can cause such traffic even without initial authentication.

Generated by OpenCVE AI on October 8, 2026 at 20:39 UTC.

Remediation

Vendor Solution

IBM encourages customers to update their systems promptly.  ProductVersions FixIBM Guardium Data Protection12.2 https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=12.2&platform=Linux&function=fixId&fixids=SqlGuard_12.0p233_FixPack&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply the IBM Guardium Data Protection 12.2 fix pack as detailed in the official IBM fix central link for the Quick Search XSS vulnerability.
  • Verify that the Guardium appliance has ceased logging potentially malicious database traffic that could be used to trigger the XSS attack.
  • If immediate updating is not feasible, consider disabling or restricting access to the Quick Search feature to prevent exploitation until a patch can be applied.

Generated by OpenCVE AI on October 8, 2026 at 20:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 08 Oct 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 08 Oct 2026 19:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.2 IBM Security Guardium Data Protection is vulnerable to stored cross-site scripting (XSS) in the Quick Search results grid. An unauthenticated attacker who can influence monitored database traffic could execute malicious script in the browser of an authenticated Guardium user.
Title IBM Guardium Data Protection Cross-Site Scripting
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-79
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 9.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-10-08T19:52:45.075Z

Reserved: 2026-09-01T13:13:29.086Z

Link: CVE-2026-84244

cve-icon Vulnrichment

Updated: 2026-10-08T19:52:41.653Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-10-08T20:17:37.160

Modified: 2026-10-08T20:49:50.083

Link: CVE-2026-84244

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-08T20:45:14Z

Weaknesses
  • CWE-79

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')