CVE-2026-84842 IBM Guardium Data Protection 路径遍历与任意文件删除漏洞
影响认证攻击者可删除任意文件,导致拒绝服务或系统完整性受损
AI 研判
IBM Guardium Data Protection 12.2 的 Datasource REST 组件存在路径遍历漏洞,攻击者可借此删除任意文件。该漏洞需认证后远程利用,CVSS 评分为 8.1,属高危级别。
影响范围
IBM Guardium Data Protection
受影响版本为 IBM Guardium Data Protection 12.2,其他版本是否受影响暂无公开信息。
漏洞详情
漏洞类型为路径遍历(CWE-22)并导致任意文件删除。成因是 Datasource REST 组件未对用户可控的路径参数进行充分校验,攻击者可构造包含 ../ 的路径跳出预期目录。认证攻击者通过构造恶意请求即可删除服务器上的任意文件。
利用条件与风险
利用前提是攻击者需具备有效账号并通过网络访问 Datasource REST 接口。成功利用可删除关键文件,造成服务不可用或系统完整性受损。
修复建议
建议关注 IBM 官方安全公告并升级至修复版本;临时缓解措施包括限制 Datasource REST 接口的访问权限、加强账号管控与访问审计。
原始情报
IBM Guardium Data Protection 12.2 is vulnerable to path traversal and arbitrary file deletion in the Datasource REST component. An authenticated remote attacker could exploit this vulnerability to delete files and potentially cause denial of service or impact system integrity.