netwrix kayıtları
netwrix üreticisine ait 21 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 1 · %4,8
- Silahlaştırılmış
- 1 · %4,8
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- 246 gün
Tekrar eden sınıflar
- CWE-94 Improper Control of Generation of Code ('Code Injection')3
- CWE-732 Incorrect Permission Assignment for Critical Resource2
- CWE-287 Improper Authentication2
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-502 Deserialization of Untrusted Data1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
21 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
80Hemen | CVE-2022-31199Silahlaştırılmış | Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Auditonetwrix · auditor · CWE-502 | Kritik9,8 | KEV | %36,0 | 7 Kas 2022 |
40Planlayın | CVE-2025-48748İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.netwrix · directory manager · CWE-798 | Kritik10,0 | — | %0,4 | 29 May 2025 |
39İzleyin | CVE-2025-26817İstismar yok | Netwrix Password Secure 9.2.0.32454 allows OS command injection.netwrix · password secure · CWE-78 | Kritik9,8 | — | %1,6 | 3 Nis 2025 |
39İzleyin | CVE-2025-26818İstismar yok | Netwrix Password Secure through 9.2 allows command injection.netwrix · password secure · CWE-94 | Kritik9,8 | — | %1,1 | 3 Nis 2025 |
39İzleyin | CVE-2023-41264İstismar yok | Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, lnetwrix · usercube · CWE-287 | Kritik9,8 | — | %1,0 | 28 Kas 2023 |
39İzleyin | CVE-2024-36072İstismar yok | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the logginCWE-779 | Kritik9,8 | — | %1,0 | 27 Haz 2024 |
36İzleyin | CVE-2025-48749İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Danetwrix · directory manager · CWE-201 | Kritik9,1 | — | %0,4 | 28 May 2025 |
31İzleyin | CVE-2020-15931Kavram kanıtı | Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domainnetwrix · account lockout examiner · CWE-200 | Yüksek7,5 | — | %3,7 | 20 Eki 2020 |
31İzleyin | CVE-2019-14969İstismar yok | Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders.netwrix · auditor · CWE-732 | Yüksek7,8 | — | %0,5 | 12 Ağu 2019 |
28İzleyin | CVE-2024-36074İstismar yok | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the EndpoiCWE-94 | Yüksek7,2 | — | %0,8 | 27 Haz 2024 |
28İzleyin | CVE-2024-36073İstismar yok | Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the shadowCWE-77 | Yüksek7,2 | — | %0,8 | 27 Haz 2024 |
26İzleyin | CVE-2024-36075İstismar yok | The CoSoSys Endpoint Protector through 5.9.3 and Unify agent through 7.0.6 is susceptible to an arbitrary code execution vulnerability due tCWE-94 | Orta6,5 | — | %0,5 | 27 Haz 2024 |
26İzleyin | CVE-2025-48746İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Critnetwrix · directory manager · CWE-287 | Orta6,5 | — | %0,3 | 28 May 2025 |
24İzleyin | CVE-2025-54392İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vulnetwrix · directory manager · CWE-79 | Orta6,1 | — | %0,3 | 7 Ağu 2025 |
24İzleyin | CVE-2025-54395İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.netwrix · directory manager · CWE-79 | Orta6,1 | — | %0,3 | 7 Ağu 2025 |
21İzleyin | CVE-2025-47748İstismar yok | Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.netwrix · directory manager · CWE-259 | Orta5,3 | — | %0,3 | 28 May 2025 |
21İzleyin | CVE-2025-54394İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to netwrix · directory manager · CWE-522 | Orta5,3 | — | %0,3 | 7 Ağu 2025 |
21İzleyin | CVE-2025-54393İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection.netwrix · directory manager · CWE-77 | Orta5,4 | — | %0,2 | 7 Ağu 2025 |
21İzleyin | CVE-2025-54396İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection.netwrix · directory manager · CWE-89 | Orta5,4 | — | %0,2 | 7 Ağu 2025 |
20İzleyin | CVE-2025-48747İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assinetwrix · directory manager · CWE-732 | Orta5,0 | — | %0,3 | 28 May 2025 |
17İzleyin | CVE-2025-54397İstismar yok | Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authenticnetwrix · directory manager · CWE-284 | Orta4,3 | — | %0,3 | 7 Ağu 2025 |
- CVE-2022-3119980Hemen
Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Audito
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %36netwrix · auditor7 Kas 2022
- CVE-2025-4874840Planlayın
Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.
KritikCVSS 10,0İstismar yokEPSS %0netwrix · directory manager29 May 2025
- CVE-2025-2681739İzleyin
Netwrix Password Secure 9.2.0.32454 allows OS command injection.
KritikCVSS 9,8İstismar yokEPSS %2netwrix · password secure3 Nis 2025
- CVE-2025-2681839İzleyin
Netwrix Password Secure through 9.2 allows command injection.
KritikCVSS 9,8İstismar yokEPSS %1netwrix · password secure3 Nis 2025
- CVE-2023-4126439İzleyin
Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, l
KritikCVSS 9,8İstismar yokEPSS %1netwrix · usercube28 Kas 2023
- CVE-2024-3607239İzleyin
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the loggin
KritikCVSS 9,8İstismar yokEPSS %127 Haz 2024
- CVE-2025-4874936İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information into Sent Da
KritikCVSS 9,1İstismar yokEPSS %0netwrix · directory manager28 May 2025
- CVE-2020-1593131İzleyin
Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain
YüksekCVSS 7,5Kavram kanıtıEPSS %4netwrix · account lockout examiner20 Eki 2020
- CVE-2019-1496931İzleyin
Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders.
YüksekCVSS 7,8İstismar yokEPSS %0netwrix · auditor12 Ağu 2019
- CVE-2024-3607428İzleyin
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoi
YüksekCVSS 7,2İstismar yokEPSS %127 Haz 2024
- CVE-2024-3607328İzleyin
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the shadow
YüksekCVSS 7,2İstismar yokEPSS %127 Haz 2024
- CVE-2024-3607526İzleyin
The CoSoSys Endpoint Protector through 5.9.3 and Unify agent through 7.0.6 is susceptible to an arbitrary code execution vulnerability due t
OrtaCVSS 6,5İstismar yokEPSS %127 Haz 2024
- CVE-2025-4874626İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Crit
OrtaCVSS 6,5İstismar yokEPSS %0netwrix · directory manager28 May 2025
- CVE-2025-5439224İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a different vul
OrtaCVSS 6,1İstismar yokEPSS %0netwrix · directory manager7 Ağu 2025
- CVE-2025-5439524İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration data.
OrtaCVSS 6,1İstismar yokEPSS %0netwrix · directory manager7 Ağu 2025
- CVE-2025-4774821İzleyin
Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.
OrtaCVSS 5,3İstismar yokEPSS %0netwrix · directory manager28 May 2025
- CVE-2025-5439421İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to
OrtaCVSS 5,3İstismar yokEPSS %0netwrix · directory manager7 Ağu 2025
- CVE-2025-5439321İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection.
OrtaCVSS 5,4İstismar yokEPSS %0netwrix · directory manager7 Ağu 2025
- CVE-2025-5439621İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection.
OrtaCVSS 5,4İstismar yokEPSS %0netwrix · directory manager7 Ağu 2025
- CVE-2025-4874720İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assi
OrtaCVSS 5,0İstismar yokEPSS %0netwrix · directory manager28 May 2025
- CVE-2025-5439717İzleyin
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authentic
OrtaCVSS 4,3İstismar yokEPSS %0netwrix · directory manager7 Ağu 2025