CVE-2026-84250: IBM Guardium Data Protection

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

IBM Guardium Data Protection 12.2 is vulnerable due to weak cryptographic protection and a hard-coded recovery key in the pkcrypto passkey component. A local attacker could exploit this vulnerability to recover the root password and gain root privileges.

Affected products

  • IBM Guardium Data Protection: version 12.2 only

Published 2026-10-08. Last modified 2026-10-10.