CyberRota Analysis
AI-GeneratedIBM Guardium Data Protection 12.2 is vulnerable due to the storage of internal REST service-account passwords in a reversible plaintext-equivalent format, allowing authenticated attackers to recover these credentials. This could lead to unauthorized administrative access via REST tokens, posing a significant risk to data security. Organizations using this version of Guardium should prioritize remediation to protect sensitive data and maintain system integrity.
Original NVD Description
IBM Guardium Data Protection 12.2 stores internal REST service-account passwords in a reversible plaintext-equivalent format. An authenticated attacker who gains access to the stored credential could recover the password and obtain an administrative REST access token.