CVE-2026-84034

Summary

IBM Guardium Data Protection 12.2 is vulnerable to a hardcoded credentials vulnerability in the hardware_assess/obstore binaries. A low-privileged authenticated user can recover hardcoded product master secrets, potentially resulting in unauthorized access to the internal database and compromise of sensitive system information.

Affected Software

VendorProductVersion RangeStatus
IBMGuardium Data Protection12.2affected

Weaknesses

  • CWE-798: CWE-798 Use of Hard-coded Credentials

References