OCTOBER 2, 2026
Live Feed
Back to database
Case File

CVE-2026-84422

HIGH · CVSS 7.2 EPSS 0.68%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-02

CyberRota Analysis

AI-Generated

IBM Guardium Data Protection 12.2 is susceptible to a command injection vulnerability within the CLI certificate SMIME recipient deletion feature, enabling authenticated privileged users to execute arbitrary commands with root privileges. This poses a significant risk of unauthorized access and system compromise. Organizations utilizing this version of IBM Guardium should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-84422
Severity
HIGH
CVSS
7.2
EPSS
0.68%

Original NVD Description

IBM Guardium Data Protection 12.2 is vulnerable to command injection in the CLI certificate SMIME recipient deletion functionality, allowing an authenticated privileged CLI user to execute arbitrary commands with root privileges.

Related CVEs

Other vulnerabilities affecting the same vendor(s)