SQL Command Execution Vulnerability in IBM Guardium Data Protection
CVE-2026-84073

9.1CRITICAL

Key Information:

Vendor

IBM

Vendor
CVE Published:
18 September 2026

What is CVE-2026-84073?

IBM Guardium Data Protection version 12.2 is susceptible to an SQL command execution vulnerability, allowing remote authenticated attackers to execute arbitrary SQL commands. This issue arises from the inadequate handling of special elements within SQL commands, potentially compromising the integrity of the affected system. Users of this product are strongly advised to apply any available patches to safeguard against potential exploitation.

Affected Version(s)

Guardium Data Protection 12.2

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.