CVE-2026-85542: Command Injection
IBM Security Guardium Data Protection is affected by a command injection vulnerability in the GIM bundle import functionality. An authenticated attacker can provide a crafted GIM bundle that causes attacker-controlled arguments to be passed to the tar command, resulting in arbitrary command execution with elevated privileges on the Central Manager.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
An attacker must be authenticated and able to use the GIM bundle import functionality. Successful exploitation affects the Central Manager.
What does an attacker need to provide to trigger the issue?
The attacker needs to submit a crafted GIM bundle through the import functionality. The crafted bundle can cause attacker-controlled arguments to be passed to the tar command.
What is the impact of successful exploitation?
Successful exploitation results in arbitrary command execution with elevated privileges on the Central Manager.