CVE-2019-4698: IBM Guardium Data Encryption

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 171929.

Affected products

  • IBM Guardium Data Encryption: version 3.0.0.2 only
  • IBM Guardium For Cloud Key Management: before 1.7.0 (fixed in 1.7.0)

Published 2020-08-26. Last modified 2026-06-17.