Product
netwrix directory manager
12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-54397
CVE-2025-54396
CVE-2025-54395
CVE-2025-54394
CVE-2025-54393
CVE-2025-54392
CVE-2025-48748
CVE-2025-48749
CVE-2025-48747
CVE-2025-47748
CVE-2025-48746
CVE-2001-1020
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows SQL Injection. Authenticated users can e
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication configuration dat
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for re
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated use
>= 11.0.0.0 and < 11.1.25162.02
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows XSS for authentication error data, a dif
<= 10.0.7784.0
Netwrix Directory Manager (formerly Imanami GroupID) through v.10.0.7784.0 has a hard-coded password.
>= 11.0.0.0 and < 11.1.25134.03
Netwrix Directory Manager (formerly Imanami GroupID) v11.0.0.0 and before & after v.11.1.25134.03 inserts Sensitive Information in
>= 11.0.0.0 and < 11.1.25134.03
Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permi
>= 11.0.0.0 and < 11.1.25134.03
Netwrix Directory Manager v.11.0.0.0 and before & after v.11.1.25134.03 contains a hardcoded password.
<= 11.0.0.0
Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication
<= 0.91
edit_image.php in Vibechild Directory Manager before 0.91 allows remote attackers to execute arbitrary commands via shell metachar