What is CVE-2026-5487?
CVE-2026-5487 is an unauthenticated Directory Traversal vulnerability in DriveLock. It allows remote attackers to disclose sensitive information via the web service on affected installations. Affected systems should be checked for an official patch immediately.
Azərbaycanca: CVE-2026-5487 DriveLock proqramında autentifikasiya tələb etməyən Directory Traversal zəifliyidir. Bu boşluq uzaqdan hücum edənlərə veb servisi vasitəsilə həssas məlumatları əldə etməyə imkan verir. Təsirə məruz qalan sistemlərdə dərhal rəsmi patch yoxlanmalıdır.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: DriveLock
FAQ2
Which software is affected by CVE-2026-5487?
The CVE-2026-5487 vulnerability affects DriveLock software.
What type of vulnerability is CVE-2026-5487 and what can an attacker achieve?
It is an unauthenticated Directory Traversal vulnerability. An attacker can disclose sensitive information via the web service.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.