Security Guardium
Vendor:
First CVE: Nov 8, 2015 · Active for 10 years
112
Total CVEs
More Total CVEs than 99% of tracked products
10.2
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
6.6
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Security Guardium over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 8, 2015
10 years ago
Most Recent CVE
May 28, 2025
425 days ago
CVE Severity & Scoring
Security Guardium112 CVEs
52%
37%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local18 (16.1%)
Network92 (82.1%)
Unknown1 (0.9%)
Physical0 (0.0%)
Adjacent Network1 (0.9%)
Attack Complexity
Low105 (93.8%)
High6 (5.4%)
Unknown1 (0.9%)
User Interaction
None90 (80.4%)
Unknown1 (0.9%)
Required21 (18.8%)
Privileges Required
Low50 (44.6%)
High14 (12.5%)
None47 (42.0%)
Unknown1 (0.9%)
Top CVEs
Signals from CVEs in this product scope (112 CVEs).
112 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-4193CRITICAL IBM Security Guardium 11.1 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 174857. | Jun 4, 2020 | 9.8 | 31 | NO | NO |
CVE-2018-1818CRITICAL IBM Security Guardium 10 and 10.5 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication | Dec 13, 2018 | 9.8 | 31 | NO | NO |
CVE-2017-1253CRITICAL IBM Security Guardium 10.0 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploi | Jul 5, 2017 | 9.9 | 30 | NO | NO |
CVE-2020-4690CRITICAL IBM Security Guardium 11.3 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to ext | Sep 23, 2021 | 9.8 | 29 | NO | NO |
CVE-2021-20418CRITICAL IBM Security Guardium 11.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 196 | Aug 11, 2021 | 9.8 | 29 | NO | NO |
CVE-2021-20426CRITICAL IBM Security Guardium 11.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to ext | May 24, 2021 | 9.8 | 29 | NO | NO |
CVE-2019-4422HIGH IBM Security Guardium 9.0, 9.5, and 10.6 are vulnerable to a privilege escalation which could allow an authenticated user to change the accessmgr password. IBM X-Force ID: 162768. | Oct 3, 2019 | 8.8 | 28 | NO | NO |
CVE-2020-4921HIGH IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modi | Jan 20, 2021 | 8.8 | 27 | NO | NO |
CVE-2019-4292HIGH IBM Security Guardium 10.5 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable web server. IBM X-For | Jul 2, 2019 | 8.8 | 27 | NO | NO |
CVE-2023-47709HIGH IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IB | May 14, 2024 | 8.8 | 26 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (112 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (112 CVEs).
Media Mentions
Signals from CVEs in this product scope (112 CVEs).
Top CNAs Publishing CVEs For Security Guardium
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 9.5 | 9 | 7.1 | 0.8% | 0 | 0 |
| 9.1 | 9 | 7.1 | 0.8% | 0 | 0 |
| 9.0 | 10 | 6.7 | 0.8% | 0 | 0 |
| 8.2 | 5 | 7.3 | 0.4% | 0 | 0 |
| 12.0 | 10 | 6.0 | 0.4% | 0 | 0 |
| 11.5 | 14 | 6.8 | 0.5% | 0 | 0 |
| 11.4 | 17 | 6.7 | 0.6% | 0 | 0 |
| 11.3 | 20 | 6.8 | 0.7% | 0 | 0 |
| 11.2 | 22 | 6.9 | 1.1% | 0 | 0 |
| 11.1 | 13 | 6.7 | 0.9% | 0 | 0 |
| 11.0 | 3 | 6.5 | 0.6% | 0 | 0 |
| 10.6 | 13 | 6.8 | 0.9% | 0 | 0 |
| 10.5 | 10 | 6.6 | 0.9% | 0 | 0 |
| 10.1.4 | 1 | 7.5 | 1.1% | 0 | 0 |
| 10.1.3 | 11 | 5.7 | 0.7% | 0 | 0 |
| 10.1.2 | 20 | 6.5 | 1.0% | 0 | 0 |
| 10.1.0 | 11 | 5.8 | 0.8% | 0 | 0 |
| 10.1 | 14 | 7.1 | 1.1% | 0 | 0 |
| 10.0.1 | 20 | 6.7 | 1.0% | 0 | 0 |
| 10.01 | 3 | 6.1 | 0.6% | 0 | 0 |