CVE-2026-81623
MEDIUMCVSS 6.3/10EPSS 0.26%
Last modified
CVE-2026-81623 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileges on the system due to improper validation of user supplied input.. EPSS estimates a 0.26% chance of exploitation in the next 30 days.
Description
IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileges on the system due to improper validation of user supplied input.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| IBM | Guardium Data Protection | 12.2 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-81623?
IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileges on the system due to improper validation of user supplied input.
How severe is CVE-2026-81623?
CVE-2026-81623 has a CVSS score of 6.3/10 (MEDIUM severity). The EPSS model estimates a 0.26% probability of exploitation in the next 30 days.
How do I fix CVE-2026-81623?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-8158The Signed Video Framework contained a buffer overflow issu…5.3
- CVE-2026-81581Improper validation of memory boundaries in WibuKey64.sys of…8.8
- CVE-2026-81583The My Login WordPress plugin before 7.2.0 does not enforce…5.4
- CVE-2026-8159multiparty@4.2.3 and lower versions are vulnerable to denial…7.5
- CVE-2026-8161multiparty@4.2.3 and lower versions are vulnerable to denial…7.5
- CVE-2026-8162multiparty@4.2.3 and lower versions are vulnerable to denial…7.5
- CVE-2026-81624Undertow is a flexible performant web server used in JBoss E…7.5
- CVE-2026-81625A remote attacker with user privileges may use a malicious o…8.8
- CVE-2026-81626IBM Guardium Data Protection 12.2 is vulnerable to a SQL inj…8.6
- CVE-2026-81627A flaw was found in QEMU. The VAPIC setup hypercall in hw/i3…8.2
- CVE-2026-8163The Infility Global WordPress plugin before 2.15.19 does not…8.8
- CVE-2026-81630The Botslab G980H dash camera firmware does not adequately v…8.1
Are you affected by CVE-2026-81623?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
