IBM Guardium Key Lifecycle Manager Improper Privilege Management Vulnerability

Vulnerability

A vulnerability allowing improper privilege management has been identified in IBM Guardium Key Lifecycle Manager versions 4.1, 4.1.1, 4.2, 4.2.1, 5.0, and 5.1. This vulnerability could potentially be exploited to manipulate user privileges in a way that may lead to unauthorized actions or access within the application.

Impact

Exploitation of this vulnerability could result in unauthorized privilege escalation, allowing users to gain elevated rights or access within the application.

Remediation

Users are advised to upgrade to IBM Guardium Key Lifecycle Manager version 5.1. Instructions for downloading this version are available on the IBM Passport Advantage website. For users on version 5.1, the specific fix to apply is 5.1.0-ISS-GKLM-FP0001.

Added: Apr 23, 2026, 12:30 AM
Updated: Apr 23, 2026, 12:30 AM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
5.0
exploitability
4.9
remediation
7.7
relevance
6.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.