CVE-2026-1272 is a security misconfiguration vulnerability affecting IBM Guardium Data Protection versions 12.0, 12.1, and 12.2, specifically in the user access control panel. The vulnerability carries a CVSS score of 2.7 (LOW) with a network-accessible attack vector requiring high privileges and no user interaction. The potential impact is limited to integrity violations with no confidentiality or availability concerns. The vulnerability is not currently being actively exploited in the wild, as evidenced by its absence from the Known Exploited Vulnerabilities catalog, and community attention remains minimal based on its low EPSS score of 0.00022, indicating it poses negligible risk relative to other disclosed CVE vulnerabilities.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.0CPE matchmatch criteria | cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:* | ||
12.1CPE matchmatch criteria | cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:* | ||
12.2CPE matchmatch criteria | cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.