Guardium Data Protection IBM Guardium Data Protection

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in IBM Guardium Data Protection.

By the Year

In 2026 there have been 48 vulnerabilities in IBM Guardium Data Protection with an average score of 8.0 out of ten. Last year, in 2025 Guardium Data Protection had 2 security vulnerabilities published. That is, 46 more vulnerabilities have already been reported in 2026 as compared to last year. However, the average CVE base score of the vulnerabilities in 2026 is greater by 1.71.

Year Vulnerabilities Average Score
2026 48 8.01
2025 2 6.30

It may take a day or so for new Guardium Data Protection vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent IBM Guardium Data Protection Security Vulnerabilities

IBM Guardium DP 12.2 SQLi Remote Authenticated Data Leakage
CVE-2026-84239 7.6 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper neutralization of special elements used in an SQL command.

SQL Injection

IBM Guardium Data Protection 12.2 Auth Bypass Vulnerability
CVE-2026-84241 8.1 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper authorization.

AuthZ

IBM Guardium Data Protection 12.2 RCE via unsanitized input in web page
CVE-2026-84108 8.1 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of input during web page generation.

XSS

IBM Guardium DP 12.2 Web UI RCE via improper input neutralization
CVE-2026-84106 8.9 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.

XSS

IBM Guardium Data Protection 12.2 SQL Injection via Improper Neutralization
CVE-2026-84105 7.7 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper neutralization of special elements used in an SQL command.

SQL Injection

IBM Guardium DP 12.2 Local Priv Esc via Improper Priv Mgmt
CVE-2026-84089 7.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.

Improper Privilege Management

IBM Guardium 12.2 Pathname Handling Remote Auth Attacker Code Exec
CVE-2026-84086 7.2 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.

Directory traversal

IBM Guardium Data Protection 12.2 Remote Execution via OS Command Injection
CVE-2026-84085 8.1 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command.

Shell injection

CVE-2026-84084: IBM Guardium Data Protection 12.2 CSRF allows remote bypass
CVE-2026-84084 8.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF) vulnerability.

Session Riding

IBM Guardium Data Protection 12.2 SUID nmap_wrapper LPE Vulnerability
CVE-2026-84083 7.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector appliance. A local attacker with low-privileged access to the Collector can exploit insufficient argument validation in the SUID binary to execute arbitrary commands as root, resulting in full compromise of the Collector appliance.

Improper Privilege Management

IBM Guardium Data Protection 12.2 SQL Injection RCE
CVE-2026-84082 9.8 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.

SQL Injection

IBM Guardium DP 12.2 Certificate Validation Bypass
CVE-2026-84081 8.1 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper certificate validation.

Improper Certificate Validation

IBM Guardium DP 12.2: Unauth Access via LoadBalancerServlet
CVE-2026-84078 9.9 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a missing authentication vulnerability in the LoadBalancerServlet. An unauthenticated user can access privileged load-balancer operations, potentially resulting in unauthorized actions and impact to the integrity and availability of the affected system.

Missing Authentication for Critical Function

IBM Guardium DP 12.2 XSRF Bypass Security Restrictions
CVE-2026-84077 8.1 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery vulnerability.

Session Riding

IBM Guardium Data Protection 12.2 Improper Authorization (CVE202684076)
CVE-2026-84076 7.6 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.

AuthZ

Auth bypass via ChangeTrackerServlet in IBM Guardium DP 12.2
CVE-2026-84075 9.9 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to missing authentication for the ChangeTrackerServlet.

Missing Authentication for Critical Function

RCE via Improper Input Neutralization in IBM Guardium DP 12.2
CVE-2026-84074 8.9 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.

XSS

IBM Guardium 12.2 SQL Injection via Improper Neutralization of Special Elements
CVE-2026-84073 9.1 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.

SQL Injection

IBM Guardium 12.2 OS Command Injection via Universal Connector Upload
CVE-2026-84071 7.2 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to OS command injection in the Universal Connector plugin upload functionality. A privileged authenticated attacker can provide a malicious filename that is incorporated into a shell command executed by the application, potentially resulting in arbitrary command execution with root-level privileges.

Shell injection

IBM Guardium 12.2 RCE via Improper Input Neutralization in Web Gen
CVE-2026-84070 8.9 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.

XSS

IBM Guardium DP 12.2 Auth Bypass (Remote Authenticated Attacker)
CVE-2026-84036 7.4 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.

AuthZ

IBM Guardium DP 12.2 Authenticated SQL Injection Vulnerability
CVE-2026-84064 9.9 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.

SQL Injection

IBM Guardium Dp 12.2 Hardcoded Credentials in obstore Binary
CVE-2026-84034 8.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a hardcoded credentials vulnerability in the hardware_assess/obstore binaries. A low-privileged authenticated user can recover hardcoded product master secrets, potentially resulting in unauthorized access to the internal database and compromise of sensitive system information.

Use of Hard-coded Credentials

IBM Guardium Data Protection 12.2 RCE via Web Page XSS
CVE-2026-84031 9 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.

XSS

Auth Bypass in IBM Guardium Data Protection 12.2 IPACL Exemption
CVE-2026-82967 9.8 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to an authentication bypass that allows an unauthenticated remote attacker to bypass IP-based access controls and access the Guardium management interface.

Missing Authentication for Critical Function

IBM Guardium DP 12.2 PT PathTraversal Remote Authenticated
CVE-2026-82896 7.6 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to traverse directories on the system due to a path traversal vulnerability.

Directory traversal

IBM Guardium Data Protection 12.2 Local Priv Escalation via Improper Priv Mgmt
CVE-2026-82893 7.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.

Improper Privilege Management

Remote Exec via OS Cmd in IBM Guardium DP 12.2 (CVE-2026-82892)
CVE-2026-82892 8.1 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

Shell injection

Remote Authenticated JS Exec via XSS in IBM Guardium Data Protection 12.2
CVE-2026-82890 5.9 - Medium - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary JavaScript code due to improper neutralization of input during web page generation.

XSS

OS Command Injection in IBM Guardium 12.2 via Improper Input
CVE-2026-82887 8.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

Shell injection

IBM Guardium Data Protection 12.2 REST API Auth Bypass Elevates Privileges
CVE-2026-82885 8.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to gain elevated privileges due to missing authorization in the REST API.

AuthZ

Remote Code Exec in IBM Guardium DP 12.2 via Improper Input Neutralization
CVE-2026-82832 9.6 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.

XSS

IBM Guardium Data Protection 12.2 Unauthenticated Deserialization (CAS Listener)
CVE-2026-82340 9.8 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure deserialization and attacker-controlled reflective method dispatch in the Change Audit System (CAS) listener. A network attacker able to reach TCP port 16017 may submit crafted serialized messages and potentially cause unintended code execution in the Guardium appliance.

Code Injection

IBM Guardium DP 12.2 CLI Command Injection via import remotelog_config
CVE-2026-81937 7.2 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in the import remotelog_config file CLI command. A highly privileged authenticated user can inject shell commands through the filename parameter, potentially resulting in arbitrary command execution with root privileges and impact to the confidentiality, integrity, and availability of the affected system.

Shell injection

IBM Guardium DP 12.2 SQLi in Analytic Grid Service Handler (Auth Intr)
CVE-2026-81933 8.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Analytic Grid Service Handler. A low-privileged authenticated user can inject SQL statements through the analytic cases grid endpoint, potentially resulting in unauthorized access to sensitive data and impact to the confidentiality, integrity, and availability of the affected system.

SQL Injection

IBM Guardium Data Protection 12.2 CLI Command Injection via CSR Wildcard Alias
CVE-2026-81669 7.2 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in the create csr wildcard CLI command. An authenticated privileged CLI user can inject arbitrary shell commands through the alias input, resulting in command execution with root privileges.

Shell injection

IBM Guardium DP 12.2 RCE via Untrusted Deserialization
CVE-2026-81657 9.8 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker to execute arbitrary code on the system due to the deserialization of untrusted data.

Marshaling, Unmarshaling

IBM Guardium 12.2 SQLi in New Query Builder REST
CVE-2026-81656 8.8 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor. A low-privileged authenticated user can inject SQL statements through the newQueryBuilder REST endpoint, potentially resulting in unauthorized access to data and impact to the confidentiality, integrity, and availability of the affected system.

SQL Injection

IBM Guardium 12.2 SQLi via LBServlet data breach
CVE-2026-81626 8.6 - High - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Load Balancer Groups component. An unauthenticated user can inject SQL statements through the Load Balancer Servlet endpoint, potentially resulting in unauthorized access to data and impact to the confidentiality, integrity, and availability of the affected system.

SQL Injection

IBM Guardium DP 12.2 Authenticated Remote Command Exec via Input Validation
CVE-2026-81623 6.3 - Medium - September 18, 2026

IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileges on the system due to improper validation of user supplied input.

Shell injection

IBM Guardium Data Protection 12.2 ExportCertificate Auth'd OS Command Injection
CVE-2026-80442 9.9 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection vulnerability in the exportCertificate functionality. Successful exploitation could allow an attacker to execute unauthorized commands and impact the confidentiality, integrity, and availability of the affected system.

Shell injection

IBM Guardium Data Protection 12.2 SQL injection in generateInsertQuery
CVE-2026-80441 9.8 - Critical - September 18, 2026

IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the generateInsertQuery functionality of change-tracker-data.sql. A remote attacker could inject malicious SQL that is subsequently processed by the application, potentially resulting in compromise of the confidentiality, integrity, and availability of the affected system.

SQL Injection

IBM Guardium Data Protection 12.2.1-12.2.2 LTR Exposes Credentials in Debug Mode
CVE-2026-8405 6.5 - Medium - May 27, 2026

IBM Guardium Data Protection 12.2.1, and 12.2.2 's add-on feature of Guardium Data Protection named "Long Term Retention" (LTR) can expose sensitive credentials in debug mode.

Information Disclosure

IBM Guardium 12.* Security Misconfiguration User Access Control
CVE-2026-1272 2.7 - Low - April 22, 2026

IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to Security Misconfiguration vulnerability in the user access control panel.

Insufficient Session Expiration

IBM Guardium Data Protection Bypass Business Logic (12.012.2)
CVE-2026-1274 4.9 - Medium - April 22, 2026

IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to a Bypass Business Logic vulnerability in the access management control panel.

Business Logic Errors

IBM Guardium DP 12.1 dir traversal -> arbitrary file write via crafted URL
CVE-2026-4917 4.9 - Medium - April 22, 2026

IBM Guardium Data Protection 12.1 could allow an administrative user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to write arbitrary files on the system.

Directory traversal

IBM Guardium DP 12.1 XSS: Stored XS via JS injection in Admin UI
CVE-2026-4918 5.5 - Medium - April 22, 2026

IBM Guardium Data Protection 12.1 is vulnerable to stored cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

XSS

IBM Guardium DP 12.1 XSS Allows Admin JS Injection & Credential Leak
CVE-2026-4919 4.8 - Medium - April 22, 2026

IBM Guardium Data Protection 12.1 is vulnerable to cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

XSS

IBM Guardium Data Protection Cleartext Credential Transmission
CVE-2025-36020 5.9 - Medium - August 06, 2025

IBM Guardium Data Protection could allow a remote attacker to obtain sensitive information due to cleartext transmission of sensitive credential information.

Cleartext Transmission of Sensitive Information

IBM Security Guardium 12.1 Priv Esc via Inherited Perms
CVE-2025-3473 6.7 - Medium - June 11, 2025

IBM Security Guardium 12.1 could allow a local privileged user to escalate their privileges to root due to insecure inherited permissions created by the program.

Insecure Inherited Permissions

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for IBM Guardium Data Protection or by IBM? Click the Watch button to subscribe.

IBM
Vendor

subscribe