← Back to search

CVE-2026-82340

9.8 CRITICAL

Published 2026-09-18 · Updated 2026-09-23

AI risk analysis

Summary
The flaw allows unauthenticated attackers to exploit insecure deserialization and reflective method dispatch, potentially leading to code execution on the IBM Guardium appliance.
Exploitability
Exploitation requires network access to TCP port 16017 and the ability to submit crafted serialized messages. Precondition is the absence of proper input validation and sanitization.
Blast radius
If exploited, the attack could lead to full control over the Guardium appliance, compromising sensitive data and system integrity.
Detection
No reliable host or network indicator is derivable from the published description.
Prioritized remediation
Disable the Change Audit System (CAS) listener or upgrade to the latest version of IBM Guardium Data Protection 12.2.
rceunauthtcpdeserialization

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure deserialization and attacker-controlled reflective method dispatch in the Change Audit System (CAS) listener. A network attacker able to reach TCP port 16017 may submit crafted serialized messages and potentially cause unintended code execution in the Guardium appliance.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-94

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.

Related CVEs

Related by shared AI tags and CWE weakness class. Browse the full archive.