Skip to content
Noroxi

netwrix records

21 published records for vendor netwrix.

All records

21 records
  • Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Audito

    CriticalCVSS 9.8KEVWeaponizedEPSS 36%

    netwrix · auditorNov 7, 2022

  • Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.

    CriticalCVSS 10.0No exploitEPSS 0%

    netwrix · directory managerMay 29, 2025

  • Netwrix Password Secure 9.2.0.32454 allows OS command injection.

    CriticalCVSS 9.8No exploitEPSS 2%

    netwrix · password secureApr 3, 2025

  • Netwrix Password Secure through 9.2 allows command injection.

    CriticalCVSS 9.8No exploitEPSS 1%

    netwrix · password secureApr 3, 2025

  • Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, l

    CriticalCVSS 9.8No exploitEPSS 1%

    netwrix · usercubeNov 28, 2023

  • Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the loggin

    CriticalCVSS 9.8No exploitEPSS 1%

    Jun 27, 2024

  • Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Da

    CriticalCVSS 9.1No exploitEPSS 0%

    netwrix · directory managerMay 28, 2025

  • Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain

    HighCVSS 7.5Proof of conceptEPSS 4%

    netwrix · account lockout examinerOct 20, 2020

  • Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders.

    HighCVSS 7.8No exploitEPSS 0%

    netwrix · auditorAug 12, 2019

  • Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoi

    HighCVSS 7.2No exploitEPSS 1%

    Jun 27, 2024

  • Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the shadow

    HighCVSS 7.2No exploitEPSS 1%

    Jun 27, 2024

  • The CoSoSys Endpoint Protector through 5.9.3 and Unify agent through 7.0.6 is susceptible to an arbitrary code execution vulnerability due t

    MediumCVSS 6.5No exploitEPSS 1%

    Jun 27, 2024

  • Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Crit

    MediumCVSS 6.5No exploitEPSS 0%

    netwrix · directory managerMay 28, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vul

    MediumCVSS 6.1No exploitEPSS 0%

    netwrix · directory managerAug 7, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.

    MediumCVSS 6.1No exploitEPSS 0%

    netwrix · directory managerAug 7, 2025

  • Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.

    MediumCVSS 5.3No exploitEPSS 0%

    netwrix · directory managerMay 28, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to

    MediumCVSS 5.3No exploitEPSS 0%

    netwrix · directory managerAug 7, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection.

    MediumCVSS 5.4No exploitEPSS 0%

    netwrix · directory managerAug 7, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection.

    MediumCVSS 5.4No exploitEPSS 0%

    netwrix · directory managerAug 7, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assi

    MediumCVSS 5.0No exploitEPSS 0%

    netwrix · directory managerMay 28, 2025

  • Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authentic

    MediumCVSS 4.3No exploitEPSS 0%

    netwrix · directory managerAug 7, 2025