CVE-2026-84882
HIGHCVSS 7.5/10
Last modified
CVE-2026-84882 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the Universal Connector Oracle Wallet upload component. An authenticated remote attacker could exploit this vulnerability to write arbitrary files to the system..
Description
IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the Universal Connector Oracle Wallet upload component. An authenticated remote attacker could exploit this vulnerability to write arbitrary files to the system.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| IBM | Guardium Data Protection | 12.2 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-84882?
IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the Universal Connector Oracle Wallet upload component. An authenticated remote attacker could exploit this vulnerability to write arbitrary files to the system.
How severe is CVE-2026-84882?
CVE-2026-84882 has a CVSS score of 7.5/10 (HIGH severity).
How do I fix CVE-2026-84882?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-8486Allocation of resources without limits or throttling vulnera…7.5
- CVE-2026-84860ScadaLTS 2.8.1-release-candidate build 0 is affected by an A…8.8
- CVE-2026-84862IBM Guardium Data Protection 12.2 is vulnerable to insecure …7.2
- CVE-2026-84869A condition in the ScreenConnect client may allow files to b…9.9
- CVE-2026-8487Incorrect default permissions vulnerability in Progress Soft…7.5
- CVE-2026-8488Allocation of resources without limits or throttling vulnera…7.5
- CVE-2026-84884IBM Guardium Data Protection 12.2 stores internal REST servi…7.5
- CVE-2026-84885A vulnerability has been found in simular-ai Agent-S 0.3.1/0…4.3
- CVE-2026-84886A vulnerability was determined in simular-ai Agent-S up to 0…5.3
- CVE-2026-84887A vulnerability was identified in simular-ai Agent-S up to 0…4.3
- CVE-2026-84888A weakness has been identified in RightNow-AI OpenFang up to…4.3
- CVE-2026-84889IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote a…8.8
Are you affected by CVE-2026-84882?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
