netwrix records
21 published records for vendor netwrix.
Researcher profile
- Entered KEV
- 1 · 4.8%
- Weaponized
- 1 · 4.8%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- 246 days
Recurring classes
- CWE-94 Improper Control of Generation of Code ('Code Injection')3
- CWE-732 Incorrect Permission Assignment for Critical Resource2
- CWE-287 Improper Authentication2
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-502 Deserialization of Untrusted Data1
The weakness classes this vendor ships most often: where to look.
CWEAll records
21 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
80Now | CVE-2022-31199Weaponized | Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Auditonetwrix · auditor · CWE-502 | Critical9.8 | KEV | 36.0% | Nov 7, 2022 |
40Plan | CVE-2025-48748No exploit | Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.netwrix · directory manager · CWE-798 | Critical10.0 | — | 0.4% | May 29, 2025 |
39Monitor | CVE-2025-26817No exploit | Netwrix Password Secure 9.2.0.32454 allows OS command injection.netwrix · password secure · CWE-78 | Critical9.8 | — | 1.6% | Apr 3, 2025 |
39Monitor | CVE-2025-26818No exploit | Netwrix Password Secure through 9.2 allows command injection.netwrix · password secure · CWE-94 | Critical9.8 | — | 1.1% | Apr 3, 2025 |
39Monitor | CVE-2023-41264No exploit | Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, lnetwrix · usercube · CWE-287 | Critical9.8 | — | 1.0% | Nov 28, 2023 |
39Monitor | CVE-2024-36072No exploit | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the logginCWE-779 | Critical9.8 | — | 1.0% | Jun 27, 2024 |
36Monitor | CVE-2025-48749No exploit | Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Danetwrix · directory manager · CWE-201 | Critical9.1 | — | 0.4% | May 28, 2025 |
31Monitor | CVE-2020-15931Proof of concept | Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domainnetwrix · account lockout examiner · CWE-200 | High7.5 | — | 3.7% | Oct 20, 2020 |
31Monitor | CVE-2019-14969No exploit | Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders.netwrix · auditor · CWE-732 | High7.8 | — | 0.5% | Aug 12, 2019 |
28Monitor | CVE-2024-36074No exploit | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the EndpoiCWE-94 | High7.2 | — | 0.8% | Jun 27, 2024 |
28Monitor | CVE-2024-36073No exploit | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the shadowCWE-77 | High7.2 | — | 0.8% | Jun 27, 2024 |
26Monitor | CVE-2024-36075No exploit | The CoSoSys Endpoint Protector through 5.9.3 and Unify agent through 7.0.6 is susceptible to an arbitrary code execution vulnerability due tCWE-94 | Medium6.5 | — | 0.5% | Jun 27, 2024 |
26Monitor | CVE-2025-48746No exploit | Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Critnetwrix · directory manager · CWE-287 | Medium6.5 | — | 0.3% | May 28, 2025 |
24Monitor | CVE-2025-54392No exploit | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vulnetwrix · directory manager · CWE-79 | Medium6.1 | — | 0.3% | Aug 7, 2025 |
24Monitor | CVE-2025-54395No exploit | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.netwrix · directory manager · CWE-79 | Medium6.1 | — | 0.3% | Aug 7, 2025 |
21Monitor | CVE-2025-47748No exploit | Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.netwrix · directory manager · CWE-259 | Medium5.3 | — | 0.3% | May 28, 2025 |
21Monitor | CVE-2025-54394No exploit | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to netwrix · directory manager · CWE-522 | Medium5.3 | — | 0.3% | Aug 7, 2025 |
21Monitor | CVE-2025-54393No exploit | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection.netwrix · directory manager · CWE-77 | Medium5.4 | — | 0.2% | Aug 7, 2025 |
21Monitor | CVE-2025-54396No exploit | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection.netwrix · directory manager · CWE-89 | Medium5.4 | — | 0.2% | Aug 7, 2025 |
20Monitor | CVE-2025-48747No exploit | Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assinetwrix · directory manager · CWE-732 | Medium5.0 | — | 0.3% | May 28, 2025 |
17Monitor | CVE-2025-54397No exploit | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authenticnetwrix · directory manager · CWE-284 | Medium4.3 | — | 0.3% | Aug 7, 2025 |
- CVE-2022-3119980Now
Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Audito
CriticalCVSS 9.8KEVWeaponizedEPSS 36%netwrix · auditorNov 7, 2022
- CVE-2025-4874840Plan
Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.
CriticalCVSS 10.0No exploitEPSS 0%netwrix · directory managerMay 29, 2025
- CVE-2025-2681739Monitor
Netwrix Password Secure 9.2.0.32454 allows OS command injection.
CriticalCVSS 9.8No exploitEPSS 2%netwrix · password secureApr 3, 2025
- CVE-2025-2681839Monitor
Netwrix Password Secure through 9.2 allows command injection.
CriticalCVSS 9.8No exploitEPSS 1%netwrix · password secureApr 3, 2025
- CVE-2023-4126439Monitor
Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, l
CriticalCVSS 9.8No exploitEPSS 1%netwrix · usercubeNov 28, 2023
- CVE-2024-3607239Monitor
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the loggin
CriticalCVSS 9.8No exploitEPSS 1%Jun 27, 2024
- CVE-2025-4874936Monitor
Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Da
CriticalCVSS 9.1No exploitEPSS 0%netwrix · directory managerMay 28, 2025
- CVE-2020-1593131Monitor
Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain
HighCVSS 7.5Proof of conceptEPSS 4%netwrix · account lockout examinerOct 20, 2020
- CVE-2019-1496931Monitor
Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders.
HighCVSS 7.8No exploitEPSS 0%netwrix · auditorAug 12, 2019
- CVE-2024-3607428Monitor
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoi
HighCVSS 7.2No exploitEPSS 1%Jun 27, 2024
- CVE-2024-3607328Monitor
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the shadow
HighCVSS 7.2No exploitEPSS 1%Jun 27, 2024
- CVE-2024-3607526Monitor
The CoSoSys Endpoint Protector through 5.9.3 and Unify agent through 7.0.6 is susceptible to an arbitrary code execution vulnerability due t
MediumCVSS 6.5No exploitEPSS 1%Jun 27, 2024
- CVE-2025-4874626Monitor
Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Crit
MediumCVSS 6.5No exploitEPSS 0%netwrix · directory managerMay 28, 2025
- CVE-2025-5439224Monitor
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vul
MediumCVSS 6.1No exploitEPSS 0%netwrix · directory managerAug 7, 2025
- CVE-2025-5439524Monitor
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.
MediumCVSS 6.1No exploitEPSS 0%netwrix · directory managerAug 7, 2025
- CVE-2025-4774821Monitor
Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.
MediumCVSS 5.3No exploitEPSS 0%netwrix · directory managerMay 28, 2025
- CVE-2025-5439421Monitor
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to
MediumCVSS 5.3No exploitEPSS 0%netwrix · directory managerAug 7, 2025
- CVE-2025-5439321Monitor
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection.
MediumCVSS 5.4No exploitEPSS 0%netwrix · directory managerAug 7, 2025
- CVE-2025-5439621Monitor
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection.
MediumCVSS 5.4No exploitEPSS 0%netwrix · directory managerAug 7, 2025
- CVE-2025-4874720Monitor
Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assi
MediumCVSS 5.0No exploitEPSS 0%netwrix · directory managerMay 28, 2025
- CVE-2025-5439717Monitor
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authentic
MediumCVSS 4.3No exploitEPSS 0%netwrix · directory managerAug 7, 2025