Impact
IBM Guardium Data Protection 12.2 contains insecure deserialization in its Quartz JDBC job store. When an authenticated user submits data that causes deserialization of a crafted object, control flow can be diverted to execute arbitrary code. This flaw directly aligns with CWE-502 and allows an attacker who can authenticate to the system to run code with the privileges of the Guardium service process.
Affected Systems
The vulnerability affects IBM Guardium Data Protection version 12.2 on Linux platforms. Support pages reference a fix pack (SqlGuard_12.0p233_FixPack) that should be applied to remediate the issue.
Risk and Exploitability
The CVSS score of 7.2 indicates a medium to high severity, but the EPSS score is not available, suggesting limited public exploit data. The flaw requires authentication, so the attack vector is likely internal or requires stolen credentials. The vulnerability is not listed in the CISA KEV catalog, indicating no confirmed exploitation at the time of this analysis. Organizations should treat the risk as moderate, focusing on rapid patching if authenticated access is possible.
OpenCVE Enrichment