Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated users can obtain administrative access.
References
Configurations
History
11 Aug 2025, 14:46
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CPE | cpe:2.3:a:netwrix:directory_manager:*:*:*:*:*:*:*:* | |
References | () https://community.netwrix.com/t/adv-2025-015-critical-vulnerabilities-in-netwrix-directory-manager-formerly-imanami-groupid-v11/17192 - Vendor Advisory | |
First Time |
Netwrix
Netwrix directory Manager |
07 Aug 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-77 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.4 |
07 Aug 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-07 17:15
Updated : 2025-08-11 14:46
NVD link : CVE-2025-54393
Mitre link : CVE-2025-54393
CVE.ORG link : CVE-2025-54393
JSON object : View
Products Affected
netwrix
- directory_manager
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')