CVE-2026-84250: IBM Guardium Data Protection
High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.
IBM Guardium Data Protection 12.2 is vulnerable due to weak cryptographic protection and a hard-coded recovery key in the pkcrypto passkey component. A local attacker could exploit this vulnerability to recover the root password and gain root privileges.
Affected products
- IBM Guardium Data Protection: version 12.2 only
Published 2026-10-08. Last modified 2026-10-10.