CVE-2026-84078
9.9IBM · Guardium Data Protection
IBM Guardium Data Protection 12.2 contains a missing authentication vulnerability in the LoadBalancerServlet, allowing unauthenticated access to privileged operations.
Executive summary
A critical missing authentication vulnerability in IBM Guardium Data Protection 12.2 allows unauthenticated remote attackers to perform unauthorized administrative actions on the load balancer.
Vulnerability
The flaw exists within the LoadBalancerServlet component, which fails to perform necessary authentication checks. This permits any unauthenticated network attacker to invoke privileged load-balancer functions, potentially compromising system integrity and availability.
Business impact
The ability for an unauthenticated attacker to manipulate load-balancer settings presents a severe risk to organizational operations. Successful exploitation could lead to unauthorized service disruption, redirection of traffic, or the compromise of sensitive data flows protected by the Guardium platform. With a CVSS score of 9.9, this vulnerability represents an extreme risk that requires immediate remediation to prevent potential system-wide impact.
Remediation
Immediate Action: Update IBM Guardium Data Protection to version 12.0p233 via the IBM Fix Central portal to resolve the authentication bypass.
Proactive Monitoring: Review system and network access logs for anomalous requests directed at the LoadBalancerServlet or unexpected administrative traffic patterns.
Compensating Controls: Implement network-level access control lists (ACLs) to restrict access to the Guardium management interface to trusted administrative IP addresses until the patch is applied.
Exploitation status
Public Exploit Available: No
Analyst recommendation
Given the critical CVSS severity and the nature of the flaw, this vulnerability poses a significant threat to the security of the data environment. Administrators should prioritize the application of the specified fix pack immediately. Failure to patch this component leaves the system exposed to trivial remote exploitation, which could result in a total compromise of the load-balancing infrastructure.
More IBM CVEs all →
History
- Disclosed CVE record published
- Collected by CVE Brief via github
- Analyst report written
- Published in the daily brief critical section