Vulnerabilities (CVE)

Filtered by vendor Netwrix Subscribe
Filtered by product Directory Manager
Total 11 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-54397 1 Netwrix 1 Directory Manager 2025-08-11 N/A 4.3 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authenticated users.
CVE-2025-54396 1 Netwrix 1 Directory Manager 2025-08-11 N/A 5.4 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection. Authenticated users can exploit this.
CVE-2025-54395 1 Netwrix 1 Directory Manager 2025-08-11 N/A 6.1 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.
CVE-2025-54394 1 Netwrix 1 Directory Manager 2025-08-11 N/A 5.3 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to remote Excel resources.
CVE-2025-54393 1 Netwrix 1 Directory Manager 2025-08-11 N/A 5.4 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated users can obtain administrative access.
CVE-2025-54392 1 Netwrix 1 Directory Manager 2025-08-11 N/A 6.1 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vulnerability than CVE-2025-47189.
CVE-2025-48746 1 Netwrix 1 Directory Manager 2025-06-24 N/A 6.5 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Critical Function.
CVE-2025-48748 1 Netwrix 1 Directory Manager 2025-06-23 N/A 10.0 CRITICAL
Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.
CVE-2025-47748 1 Netwrix 1 Directory Manager 2025-06-19 N/A 5.3 MEDIUM
Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.
CVE-2025-48747 1 Netwrix 1 Directory Manager 2025-06-19 N/A 5.0 MEDIUM
Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assignment for a Critical Resource.
CVE-2025-48749 1 Netwrix 1 Directory Manager 2025-06-18 N/A 9.1 CRITICAL
Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Data.