CVE-2026-84036: IBM Guardium Data Protection is affected by multiple vulnerabilities.
Published Sep 17, 2026
·Updated
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.
Other sources
IBM Guardium Data Protection could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.
— IBM
Affected Software
1 affected component
IBM Guardium Data Protection<=12.2
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Guardium Data Protectionto a version that resolves this vulnerability.Fixed in 12.2Patch SqlGuard_12.0p233_FixPack
Event History
Sep 17, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Sep 18, 2026
CVE Published
via MITRE·07:44 PM
Data Sourced
via MITRE·07:44 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need before attempting exploitation?
The attacker must be authenticated and able to reach the affected IBM Guardium Data Protection instance remotely. The available information does not indicate that unauthenticated exploitation is possible.