rootpwn

critical · CVSS v3 9.1

CVE-2026-84073

IBM Guardium Data Protection 12.2 contains an improper neutralization vulnerability in its SQL handling components. This flaw allows a remot

Overview

IBM Guardium Data Protection 12.2 contains an improper neutralization vulnerability in its SQL handling components. This flaw allows a remote authenticated attacker to execute arbitrary SQL commands against the underlying database. It matters because successful exploitation could lead to unauthorized data access or compromise of the database integrity.

Description

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.

Impact

The vulnerability primarily impacts the confidentiality and integrity of data managed by IBM Guardium Data Protection, with potential secondary impacts on system availability. Authenticated remote attackers with specific access privileges can execute arbitrary SQL commands. Organizations relying on this platform for sensitive database activity monitoring face risks of data exposure or tampering.

Remediation

Apply the official vendor-supplied security patches or updates provided by IBM for Guardium Data Protection 12.2. Review and restrict user roles and privileges to ensure the principle of least privilege is enforced for all authenticated accounts. Monitor database audit logs for anomalous query patterns or unauthorized access attempts.

Risk context

This vulnerability is classified as critical with a CVSS v3 score of 9.1, indicating a severe risk to affected systems if exploited. Organizations should prioritize patching and access control reviews to mitigate potential exposure, despite the requirement for prior authentication.

Affected products

  • IBM Guardium Data Protection 12.2

Scores

Severity
critical
CVSS v2
8
CVSS v3
9.1
CVSS v4
EPSS

cve-2026-84073 sql-injection ibm guardium data-protection critical-severity authenticated-attack

← All CVEs