DivvyDrive是土耳其DivvyDrive公司的一个文件存储与共享管理平台。 DivvyDrive 4.8.2.9版本至4.8.3.2之前版本存在输入验证错误漏洞,该漏洞源于URL重定向到不可信站点,可能导致参数注入。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| DivvyDrive Information Technologies Inc. | DivvyDrive | 4.8.2.9< 4.8.3.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| DivvyDrive Information Technologies Inc. | DivvyDrive | 4.8.2.9 ~ 4.8.3.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6002 | 8.8 HIGH | HTML Injection in DivvyDrive Information Technologies' DivvyDrive |
| CVE-2026-5784 | 8.8 HIGH | Stored XSS in DivvyDrive Information Technologies' DivvyDrive |
| CVE-2025-14341 | 8.3 HIGH | Input Data Manipulation in DivvyDrive Information Technologies' DivvyDrive |
| CVE-2026-5791 | 6.5 MEDIUM | CSRF in DivvyDrive Information Technologies' DivvyDrive |
No comments yet