Home/Product/netwrix directory manager
Product

netwrix directory manager

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-54397
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to
4.3MEDIUM
CVE-2025-54396
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection. Authenticated users can e
5.4MEDIUM
CVE-2025-54395
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration dat
6.1MEDIUM
CVE-2025-54394
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for re
5.3MEDIUM
CVE-2025-54393
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated use
5.4MEDIUM
CVE-2025-54392
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a dif
6.1MEDIUM
CVE-2025-48748
<= 10.0.7784.0
Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.
10.0CRITICAL
CVE-2025-48749
>= 11.0.0.0 and < 11.1.25134.03
Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information in
9.1CRITICAL
CVE-2025-48747
>= 11.0.0.0 and < 11.1.25134.03
Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permi
5.0MEDIUM
CVE-2025-47748
>= 11.0.0.0 and < 11.1.25134.03
Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.
5.3MEDIUM
CVE-2025-48746
<= 11.0.0.0
Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication
6.5MEDIUM
CVE-2001-1020
<= 0.91
edit_image.php in Vibechild Directory Manager before 0.91 allows remote attackers to execute arbitrary commands via shell metachar
threatengine.sh