Boletines de Vulnerabilidades

CVE-2026-85542

   
Software afectado IBM
 
IBM Guardium Data Protection 12.2 is affected by a command injection vulnerability in the GIM bundle import functionality. An authenticated attacker can provide a crafted GIM bundle that causes attacker-controlled arguments to be passed to the tar command, resulting in arbitrary command execution with elevated privileges on the Central Manager.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-85542