IBM Guardium Data Protection 12.2 存在命令注入漏洞,该漏洞影响其 GIM 包导入功能。经过身份验证的攻击者可以提供精心构造的 GIM 包,导致将攻击者控制的参数传递给 tar 命令,从而在中央管理器(Central Manager)上以 elevated 权限执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Guardium Data Protection | 12.2 |
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-84893 | 7.6 HIGH | IBM Guardium Data Protection is affected by multiple vulnerabilities. |
| CVE-2026-84882 | 7.5 HIGH | IBM Guardium Data Protection is affected by multiple vulnerabilities. |
| CVE-2026-84884 | 7.5 HIGH | IBM Guardium Data Protection is affected by multiple vulnerabilities. |
| CVE-2026-85029 | 7.5 HIGH | IBM Guardium Data Protection is affected by multiple vulnerabilities. |
| CVE-2026-84862 | 7.2 HIGH | IBM Guardium Data Protection is affected by multiple vulnerabilities. |
| CVE-2026-93306 | 7.1 HIGH | This Power System update is being released to address |
| CVE-2026-93030 | 6.5 MEDIUM | FortiManager 4.x XML外部实体注入漏洞 |
No comments yet