SQL Injection Vulnerability in IBM Guardium Data Protection
CVE-2026-84893

7.6HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
25 September 2026

What is CVE-2026-84893?

IBM Guardium Data Protection version 12.2 is affected by an SQL injection vulnerability in the PESI service. This flaw allows authenticated attackers to manipulate SQL queries, potentially exposing sensitive information stored within the internal database. Exploiting this vulnerability can lead to unauthorized data access, making it critical for users to apply the necessary patches provided by IBM to secure their systems. For more details, you can refer to the official IBM advisory.

Affected Version(s)

Guardium Data Protection 12.2

References

CVSS V3.1

Score:
7.6
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.