CVE-2026-84275 — IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the GIM file-upload functionality.
Description
IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the GIM file-upload functionality. An unauthenticated attacker could exploit this vulnerability to write arbitrary files to the Collector.
CVSS v3.1 base metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NHigh severity
Band computed from the CVSS base score, not the source's own label — so it means the same thing across every feed.
AV
Network
Attack Vector
AC
Low
Attack Complexity
PR
None
Privileges Required
UI
None
User Interaction
S
Unchanged
Scope
C
High
Confidentiality
I
None
Integrity
A
None
Availability
Related threats
same CWE or vendorCVE-2026-107377 — datamodel-code-generator generates Python data models from schema definitions.
CVE-2026-107377 · 4h ago
PraisonAI: ContextGatherer include resolution permits absolute and traversal reads outside the workspace
CVE-2026-61431 · 4h ago
PraisonAI: Project custom command templates can read outside-workspace files into model prompts
CVE-2026-60088 · 4h ago
PraisonAI: SkillTools Executes Scripts Without Path Containment Validation
CVE-2026-61443 · 5h ago
PraisonAI: FastContext path resolution permits absolute and traversal reads outside the workspace
CVE-2026-61432 · 5h ago
PraisonAI: Project config can auto-save agent output outside the project root
CVE-2026-60089 · 5h ago