CVE-2026-84086
- EPSS 0.65%
- Veröffentlicht 18.09.2026 19:51:44
- Zuletzt bearbeitet 06.10.2026 15:33:15
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.
CVE-2026-84085
- EPSS 0.32%
- Veröffentlicht 18.09.2026 19:51:08
- Zuletzt bearbeitet 06.10.2026 15:33:22
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command.
CVE-2026-84084
- EPSS 0.18%
- Veröffentlicht 18.09.2026 19:50:53
- Zuletzt bearbeitet 06.10.2026 15:33:29
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF) vulnerability.
CVE-2026-84083
- EPSS 0.11%
- Veröffentlicht 18.09.2026 19:50:37
- Zuletzt bearbeitet 06.10.2026 15:33:44
IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector appliance. A local attacker with low-privileged access to the Collector can exploit insufficient argument validation ...
CVE-2026-84082
- EPSS 0.4%
- Veröffentlicht 18.09.2026 19:50:18
- Zuletzt bearbeitet 06.10.2026 15:33:52
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
CVE-2026-84081
- EPSS 0.2%
- Veröffentlicht 18.09.2026 19:48:54
- Zuletzt bearbeitet 06.10.2026 15:33:59
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper certificate validation.
CVE-2026-84078
- EPSS 0.28%
- Veröffentlicht 18.09.2026 19:48:42
- Zuletzt bearbeitet 06.10.2026 15:34:06
IBM Guardium Data Protection 12.2 is vulnerable to a missing authentication vulnerability in the LoadBalancerServlet. An unauthenticated user can access privileged load-balancer operations, potentially resulting in unauthorized actions and impact to ...
CVE-2026-84077
- EPSS 0.19%
- Veröffentlicht 18.09.2026 19:48:20
- Zuletzt bearbeitet 06.10.2026 15:34:21
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery vulnerability.
CVE-2026-84076
- EPSS 0.31%
- Veröffentlicht 18.09.2026 19:47:53
- Zuletzt bearbeitet 06.10.2026 15:34:28
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.
CVE-2026-84075
- EPSS 0.35%
- Veröffentlicht 18.09.2026 19:46:59
- Zuletzt bearbeitet 06.10.2026 16:27:41
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to missing authentication for the ChangeTrackerServlet.