CVE-2026-81932: Multiple vulnerabilities affect the Sniffer component as part of IBM Guardium Data Protection
Published Oct 8, 2026
·Updated
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to SQL injection. A remote unauthenticated attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
Other sources
IBM Guardium Data Protection is vulnerable to SQL injection. A remote unauthenticated attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
— IBM
Affected Software
1 affected component
IBM Guardium Data Protection<=12.2, 12.1, 12.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Guardium Data Protection Snifferto a version that resolves this vulnerability.Patch SqlGuard_12.0p4018_SnifferUpdate
Event History
Oct 8, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
CVE Published
via MITRE·09:29 PM
Data Sourced
via MITRE·09:29 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:17 PM
DescriptionSeverityWeakness