Executive brief
IBM Guardium Data Protection is a database security platform that monitors and protects sensitive database activity. CVE-2026-84075 allows a remote attacker to bypass authentication controls in the ChangeTrackerServlet component, potentially gaining unauthorized access to database audit logs and security configurations without valid credentials. An attacker exploiting this could view, modify, or delete audit records to cover their tracks or alter security policies.
Technical details
The ChangeTrackerServlet in IBM Guardium Data Protection 12.2 lacks proper authentication enforcement, allowing unauthenticated network-based access. An attacker can send HTTP requests directly to this servlet endpoint to bypass security restrictions and manipulate change tracking functionality. No user interaction or elevated privileges are required; the vulnerability is directly reachable over the network.
Affected products
- IBM Guardium Data Protection 12.2
Timeline
- 2026-09-18: disclosed