CVE-2026-84275: IBM Guardium Data Protection

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the GIM file-upload functionality. An unauthenticated attacker could exploit this vulnerability to write arbitrary files to the Collector.

Affected products

  • IBM Guardium Data Protection: version 12.2 only

Published 2026-10-08. Last modified 2026-10-09.