7.3
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in DivvyDrive Information Technologies Inc. Digital Corporate Warehouse allows Stored XSS.This issue affects Digital Corporate Warehouse: before v.4.8.2.22.
Basic Information
ID
CVE-2025-11962
Source
TR-CERT
Published
Nov 12, 2025 at 09:14
Affected Product
Vendor
DivvyDrive Information Technologies Inc.
Product
Digital Corporate Warehouse
Affected Versions
DivvyDrive Information Technologies Inc. Digital Corporate Warehouse 0