CVE-2024-49816: IBM Security Guardium Key Lifecycle Manager

Medium severity, CVSS 4.4. EPSS: 0.4% chance of exploitation in the next 30 days.

IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores potentially sensitive information in log files that could be read by a local privileged user.

Affected products

  • IBM Security Guardium Key Lifecycle Manager: version 4.1.0 only; version 4.1.1 only; version 4.2.0 only; version 4.2.1 only

Published 2024-12-17. Last modified 2026-06-17.