← All Advisories

CVE-2026-84842

Last refreshed2026-10-03

Status: NEW  |  Advisory ID: CVE-2026-84842

Key Details

CVECVE-2026-84842
CVSS Score / Version8.1 (High) / CVSS v3.1
Updated2026-10-01
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is low; user interaction is none; scope is unchanged; confidentiality impact is none; integrity impact is high; availability impact is high.
Classified asCWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'))

What to Know

IBM Guardium Data Protection 12.2 is vulnerable to path traversal and arbitrary file deletion in the Datasource REST component. An authenticated remote attacker could exploit this vulnerability to delete files and potentially cause denial of service or impact system integrity. (NVD)

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-84842
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-84842
Vendor advisoryhttps://www.ibm.com/support/pages/node/7288035