CVE-2026-1272
- EPSS 0.03%
- Veröffentlicht 22.04.2026 23:33:45
- Zuletzt bearbeitet 27.04.2026 18:23:48
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to Security Misconfiguration vulnerability in the user access control panel.
CVE-2026-1274
- EPSS 0.01%
- Veröffentlicht 22.04.2026 23:30:59
- Zuletzt bearbeitet 27.04.2026 18:23:14
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to a Bypass Business Logic vulnerability in the access management control panel.
CVE-2026-4917
- EPSS 0.02%
- Veröffentlicht 22.04.2026 23:27:45
- Zuletzt bearbeitet 27.04.2026 18:13:46
IBM Guardium Data Protection 12.1 could allow an administrative user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to write arbitrary files on the system.
CVE-2026-4918
- EPSS 0.03%
- Veröffentlicht 22.04.2026 23:26:38
- Zuletzt bearbeitet 27.04.2026 18:13:02
IBM Guardium Data Protection 12.1 is vulnerable to stored cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credenti...
CVE-2026-4919
- EPSS 0.03%
- Veröffentlicht 22.04.2026 23:23:34
- Zuletzt bearbeitet 27.04.2026 18:11:52
IBM Guardium Data Protection 12.1 is vulnerable to cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials dis...
CVE-2025-36020
- EPSS 0.03%
- Veröffentlicht 06.08.2025 14:28:45
- Zuletzt bearbeitet 13.08.2025 18:21:56
IBM Guardium Data Protection could allow a remote attacker to obtain sensitive information due to cleartext transmission of sensitive credential information.
CVE-2025-3473
- EPSS 0.04%
- Veröffentlicht 11.06.2025 14:24:46
- Zuletzt bearbeitet 13.08.2025 14:26:30
IBM Security Guardium 12.1 could allow a local privileged user to escalate their privileges to root due to insecure inherited permissions created by the program.