Local Privilege Escalation in IBM Guardium Data Protection Appliance
CVE-2026-84083
7.8HIGH
What is CVE-2026-84083?
IBM Guardium Data Protection version 12.2 is susceptible to a local privilege escalation vulnerability through the SUID-root nmap_wrapper binary on the Collector appliance. This issue allows a local attacker, who possesses low-privileged access, to exploit inadequate argument validation in the SUID binary. By doing so, an attacker can execute arbitrary commands as the root user, potentially leading to a complete compromise of the Collector appliance. Organizations using this product should review the related advisory for guidance on securing their systems.
Affected Version(s)
Guardium Data Protection 12.2