CVE-2017-1601: IBM Security Guardium Database Activity Monitor

Critical severity, CVSS 9.8. EPSS: 2.4% chance of exploitation in the next 30 days.

IBM Security Guardium 10.0, 10.0.1, and 10.1 through 10.1.4 Database Activity Monitor does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 132624.

Affected products

  • IBM Security Guardium Database Activity Monitor: version 10.0 only; version 10.0.1 only; version 10.1 only; version 10.1.2 only; version 10.1.3 only; version 10.1.4 only

Published 2018-05-02. Last modified 2026-06-17.