HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-84440 — IBM Guardium Data Protection 12.2 is vulnerable to command injection in the SNMP...

·Source: NIST NVD

Updated:

Executive Summary

IBM Guardium Data Protection 12.2 is vulnerable to command injection in the SNMP alert notification functionality. An authenticated attacker who can influence policy alert text can cause attacker-controlled data to be executed as operating system commands by the SNMP alerter service, which runs with root privileges.

Analysis

IBM Guardium Data Protection 12.2 is vulnerable to command injection in the SNMP alert notification functionality. An authenticated attacker who can influence policy alert text can cause attacker-controlled data to be executed as operating system commands by the SNMP alerter service, which runs with root privileges. CVSS Score: 7.5. Published: 2026-09-29T18:17:17.953.

Indicators of Compromise (1)

CVE (1)
CVE-2026-84440
Source Attribution

Originally published by NIST NVD on Sep 29, 2026. Verified by: NIST.

Related Threats