CVE-2023-26271: IBM Guardium Cloud Key Manager

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

IBM Security Guardium Data Encryption (IBM Guardium Cloud Key Manager (GCKM) 1.10.3)) uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 248126.

Affected products

  • IBM Guardium Cloud Key Manager: up to and including 1.10.3

Published 2023-08-28. Last modified 2026-06-17.