Man-in-the-Middle Vulnerability in IBM Guardium Data Protection
CVE-2026-84032

5.6MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
8 October 2026

What is CVE-2026-84032?

IBM Guardium Data Protection 12.2.2 has a security flaw that enables a remote attacker to execute a man-in-the-middle attack. This vulnerability stems from improper validation of SSL/TLS certificates, which can allow intercepted communications. Attackers may exploit this weakness to gain unauthorized access to sensitive data and communicate as a trusted entity, potentially compromising data integrity and confidentiality.

Affected Version(s)

Guardium Data Protection 12.2.2

References

CVSS V3.1

Score:
5.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.