CVE Details
Basic Information
| Title | IBM Guardium Data Protection information disclosure |
|---|---|
| Type | cve |
| Published | 2025-08-06T14:28:45.780Z |
| Modified | 2025-08-06T14:58:31.431Z |
Product Information
| Vendor | IBM |
|---|---|
| Product | Guardium Data Protection |
| Version | 11.5 |
CVSS Information
| Base Score | 5.9 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N |
AI Analysis
| AI Description | IBM Guardium Data Protection 11.5 transmits sensitive credentials in cleartext, allowing remote attackers to obtain this information. This is a medium severity vulnerability with a CVSS score of 5.9, but due to the product’s wide use, it’s considered high severity. |
|---|---|
| AI Severity | High |
| AI Vendor | IBM |
| AI Product | Guardium Data Protection |
| AI Version | 11.5 |
Affected Products
- IBM Guardium Data Protection 11.5
Additional Information
| CWE List | CWE-319 |
|---|---|
| Source | ibm |
Description
IBM Guardium Data Protection could allow a remote attacker to obtain sensitive information due to cleartext transmission of sensitive credential information.