Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Security Guardium Key Lifecycle Manager — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in Security Guardium Key Lifecycle Manager, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities associated with IBM Security Guardium Key Lifecycle Manager, categorized by specific weakness types and industry-standard tags. It collects historical and recent advisories disclosing flaws in key management operations, cryptographic implementation errors, and access control mechanisms, covering a range of release versions from the product's introduction through current maintenance cycles. Readers can use this resource to track the vendor's advisory patterns over time, understand the prevalence of specific weakness classes such as improper key rotation or weak random number generation, and review the complete vulnerability history for this component within an enterprise security architecture. The data supports risk assessment by highlighting recurring defect categories and the frequency of security updates issued by the developer. By examining the compiled records, security teams can identify potential exposure points in their key lifecycle management infrastructure without relying on scattered individual bulletins. This aggregation facilitates a holistic view of product security posture, enabling clearer correlation between identified flaws and their potential impact on data protection objectives. The collection serves as a reference for understanding how specific coding errors or configuration missteps have manifested in this product over its lifecycle, providing context for patch prioritization and remediation strategies.

Vendor: IBM

CVE ID Title CVSS Severity Published
CVE-2024-49816 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-532 4.9 Medium 2024-12-17
CVE-2024-49820 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-319 3.7 Low 2024-12-17
CVE-2024-49819 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-319 4.1 Medium 2024-12-17
CVE-2024-49818 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-209 4.3 Medium 2024-12-17
CVE-2024-49817 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-260 4.4 Medium 2024-12-17
CVE-2023-25921 IBM Security Guardium Key Lifecycle Manager file upload CWE-434 8.5 High 2024-02-29
CVE-2023-25926 IBM Security Guardium Key Lifecycle Manager XML external entity injection CWE-611 5.5 Medium 2024-02-29
CVE-2023-25925 IBM Security Guardium Key Lifecycle Manager command injection CWE-78 8.5 High 2024-02-28
CVE-2023-25922 IBM Security Guardium Key Lifecycle Manager file upload CWE-434 4.3 Medium 2024-02-28
CVE-2023-47707 IBM Security Guardium Key Lifecycle Manager cross-site scripting CWE-79 5.4 Medium 2023-12-20
CVE-2023-47703 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-209 5.3 Medium 2023-12-20
CVE-2023-47702 IBM Security Guardium Key Lifecycle Manager directory traversal CWE-22 4.3 Medium 2023-12-20
CVE-2023-47706 IBM Security Guardium Key Lifecycle Manager file upload CWE-434 6.6 Medium 2023-12-20
CVE-2023-47705 IBM Security Guardium Key Lifecycle Manager improper input validation CWE-20 4.3 Medium 2023-12-20
CVE-2023-47704 IBM Security Guardium Key Lifecycle Manager information disclosure CWE-798 4.0 Medium 2023-12-20

All 15 known CVE vulnerabilities affecting Security Guardium Key Lifecycle Manager with full Chinese analysis, references, and POCs where available.