Remote Command Execution Vulnerability in IBM Guardium Data Protection
CVE-2026-82892

8.1HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
18 September 2026

What is CVE-2026-82892?

A vulnerability in IBM Guardium Data Protection 12.2 has been identified that allows remote attackers to execute arbitrary commands. This issue arises from improper handling of special characters in OS command inputs, potentially enabling attackers to inject malicious commands. Organizations utilizing this software should be aware of the risks and consider applying necessary patches to mitigate potential exploitation.

Affected Version(s)

Guardium Data Protection 12.2

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.