What is CVE-2026-5489?
CVE-2026-5489 is a Directory Traversal vulnerability in DriveLock that allows remote attackers to disclose sensitive information via the web service without authentication. This flaw could expose confidential files, making immediate patching critical.
Azərbaycanca: CVE-2026-5489 DriveLock məhsulunda aşkarlanmış Directory Traversal zəifliyidir. Bu boşluq autentifikasiya tələb etmədən uzaq hücumçulara veb servisi vasitəsilə sistemdəki həssas məlumatları oxumağa imkan verir. Zərərçəkənlərin bu zəifliyi istismar edərək məxfi fayllara giriş əldə edə biləcəyi üçün dərhal yamaq tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: DriveLock
FAQ2
What product is affected by CVE-2026-5489?
CVE-2026-5489 is a Directory Traversal vulnerability found in DriveLock.
Does exploiting CVE-2026-5489 require authentication?
No, this vulnerability allows remote attackers to read sensitive information via the web service without authentication.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.