Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Directory Manager MEDIUM 6.1
CVE-2025-54392

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vulnerabilit…

Fix: 11.1.25162.02+
Fix from $1,600 2025-08-07
Directory Manager MEDIUM 6.1
CVE-2025-54395

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.

Fix: 11.1.25162.02+
Fix from $1,600 2025-08-07
Directory Manager MEDIUM 5.4
CVE-2025-54393

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated users can obtain admin…

Fix: 11.1.25162.02+
Fix from $1,600 2025-08-07
Directory Manager MEDIUM 5.4
CVE-2025-54396

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection. Authenticated users can exploit this.

Fix: 11.1.25162.02+
Fix from $1,600 2025-08-07
Directory Manager MEDIUM 5.3
CVE-2025-54394

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to remote Ex…

Fix: 11.1.25162.02+
Fix from $1,600 2025-08-07
Directory Manager CRITICAL 10.0
CVE-2025-48748

Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.

Fix: after 10.0.7784.0
Fix from $2,300 2025-05-29
Directory Manager CRITICAL 9.1
CVE-2025-48749

Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Data.

Fix: 11.1.25134.03+
Fix from $2,300 2025-05-28
Directory Manager MEDIUM 5.3
CVE-2025-47748

Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.

Fix: 11.1.25134.03+
Fix from $1,600 2025-05-28
Directory Manager MEDIUM 5.0
CVE-2025-48747

Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assignment fo…

Fix: 11.1.25134.03+
Fix from $1,600 2025-05-28
Directory Manager MEDIUM 6.5
CVE-2025-48746

Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Critical Func…

Fix: after 11.0.0.0
Fix from $1,600 2025-05-28
Password Secure CRITICAL 9.8
CVE-2025-26817

Netwrix Password Secure 9.2.0.32454 allows OS command injection.

Fix: 9.2.1+
Fix from $2,300 2025-04-03
Password Secure CRITICAL 9.8
CVE-2025-26818

Netwrix Password Secure through 9.2 allows command injection.

Fix: 9.2.2+
Fix from $2,300 2025-04-03
Usercube CRITICAL 9.8
CVE-2023-41264

Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, leading to…

Fix: 6.0.215+
Fix from $2,300 2023-11-28
Auditor CRITICAL 9.8
CVE-2022-31199 KEVEPSS 36%

Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Auditor server …

Fix: 10.5+
Fix from $2,300 2022-11-08
Account Lockout Examiner HIGH 7.5
CVE-2020-15931

Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain Administ…

Fix: 5.1+
Fix from $1,950 2020-10-20
Auditor HIGH 7.8
CVE-2019-14969

Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders. In addition, the service …

Fix: 9.8+
Fix from $1,950 2019-08-12