← Back

Guardium Data Protection

guardium_data_protection

Vendor: Ibm • 8 CVEs

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ibm
1Guardium Data Protection
Jun 17, 2026
May 27, 2026
N/A· v4
6.5 MEDIUM· v3
N/A· v2
IBM Guardium Data Protection 12.2.1, and 12.2.2 's add-on feature of Guardium Data Protection named "Long Term Retention" (LTR) can expose sensitive credentials in debug mode.
1Ibm
1Guardium Data Protection
Jun 17, 2026
Apr 23, 2026
N/A· v4
4.8 MEDIUM· v3
N/A· v2
IBM Guardium Data Protection 12.1 is vulnerable to cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentia...Show more
IBM Guardium Data Protection 12.1 is vulnerable to cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.Show less
1Ibm
1Guardium Data Protection
Jun 17, 2026
Apr 23, 2026
N/A· v4
4.8 MEDIUM· v3
N/A· v2
IBM Guardium Data Protection 12.1 is vulnerable to stored cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p...Show more
IBM Guardium Data Protection 12.1 is vulnerable to stored cross-site scripting. This vulnerability allows an administrative user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.Show less
1Ibm
1Guardium Data Protection
Jun 17, 2026
Apr 23, 2026
N/A· v4
4.9 MEDIUM· v3
N/A· v2
IBM Guardium Data Protection 12.1 could allow an administrative user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to write arbitrary...Show more
IBM Guardium Data Protection 12.1 could allow an administrative user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to write arbitrary files on the system.Show less
1Ibm
1Guardium Data Protection
Jun 17, 2026
Apr 23, 2026
N/A· v4
4.9 MEDIUM· v3
N/A· v2
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to a Bypass Business Logic vulnerability in the access management control panel.
1Ibm
1Guardium Data Protection
Jun 17, 2026
Apr 23, 2026
N/A· v4
4.3 MEDIUM· v3
N/A· v2
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to Security Misconfiguration vulnerability in the user access control panel.
1Ibm
1Guardium Data Protection
Jun 17, 2026
Aug 6, 2025
N/A· v4
7.5 HIGH· v3
N/A· v2
IBM Guardium Data Protection could allow a remote attacker to obtain sensitive information due to cleartext transmission of sensitive credential information.
1Ibm
1Guardium Data Protection
Jun 17, 2026
Jun 11, 2025
N/A· v4
6.7 MEDIUM· v3
N/A· v2
IBM Security Guardium 12.1 could allow a local privileged user to escalate their privileges to root due to insecure inherited permissions created by the program.