CVE-2026-84275: Path Traversal
Published Sep 17, 2026
·Updated
IBM Security Guardium Data Protection is vulnerable to path traversal in the GIM file-upload functionality. An unauthenticated attacker could exploit this vulnerability to write arbitrary files to the Collector.
Affected Software
1 affected component
IBM Guardium Data Protection<=12.2
Event History
Sep 17, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The vulnerability can be exploited by an unauthenticated attacker through the GIM file-upload functionality.
2
Which system component is at risk?
The affected target is the Collector, where an attacker could write arbitrary files.