CVE-2026-84884
Last modified
CVE-2026-84884 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. IBM Guardium Data Protection 12.2 stores internal REST service-account passwords in a reversible plaintext-equivalent format. An authenticated attacker who gains access to the stored credential could recover the password and obtain an administrative REST access token..
Description
IBM Guardium Data Protection 12.2 stores internal REST service-account passwords in a reversible plaintext-equivalent format. An authenticated attacker who gains access to the stored credential could recover the password and obtain an administrative REST access token.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| IBM | Guardium Data Protection | 12.2 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-84884?
How severe is CVE-2026-84884?
How do I fix CVE-2026-84884?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-84860ScadaLTS 2.8.1-release-candidate build 0 is affected by an A…8.8
- CVE-2026-84862IBM Guardium Data Protection 12.2 is vulnerable to insecure …7.2
- CVE-2026-84869A condition in the ScreenConnect client may allow files to b…9.9
- CVE-2026-8487Incorrect default permissions vulnerability in Progress Soft…7.5
- CVE-2026-8488Allocation of resources without limits or throttling vulnera…7.5
- CVE-2026-84882IBM Guardium Data Protection 12.2 is vulnerable to path trav…7.5
- CVE-2026-84885A vulnerability has been found in simular-ai Agent-S 0.3.1/0…4.3
- CVE-2026-84886A vulnerability was determined in simular-ai Agent-S up to 0…5.3
- CVE-2026-84887A vulnerability was identified in simular-ai Agent-S up to 0…4.3
- CVE-2026-84888A weakness has been identified in RightNow-AI OpenFang up to…4.3
- CVE-2026-84889IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote a…8.8
- CVE-2026-8489The Ultimate Member – User Profile, Registration, Login, Mem…6.4
Are you affected by CVE-2026-84884?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
