📦 Directory Manager

by Netwrix

🔍 What is Directory Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-48748

CRITICAL CVSS 10.0 May 29, 2025

Netwrix Directory Manager (formerly Imanami GroupID) versions through 10.0.7784.0 contain a hard-coded password vulnerability. This allows attackers to gain unauthorized access to the system using the...

CVE-2025-48749

CRITICAL CVSS 9.1 May 28, 2025

Netwrix Directory Manager (formerly Imanami GroupID) versions 11.0.0.0 and earlier, and versions after 11.1.25134.03, expose sensitive information in transmitted data. This vulnerability allows attack...

CVE-2025-54397

MEDIUM CVSS 4.3 Aug 7, 2025

Netwrix Directory Manager versions 11.0.0.0 through 11.1.25162.01 expose sensitive information in data sent to authenticated users. This vulnerability allows authenticated attackers to access confiden...

CVE-2025-54392

MEDIUM CVSS 6.1 Aug 7, 2025

Netwrix Directory Manager (formerly Imanami GroupID) versions 11.0.0.0 through 11.1.25162.02 contain a cross-site scripting (XSS) vulnerability in authentication error handling. This allows attackers ...

CVE-2025-54393

MEDIUM CVSS 5.4 Aug 7, 2025

CVE-2025-54393 is a static code injection vulnerability in Netwrix Directory Manager (formerly Imanami GroupID) that allows authenticated users to execute arbitrary code and gain administrative privil...

CVE-2025-54394

MEDIUM CVSS 5.3 Aug 7, 2025

Netwrix Directory Manager versions 11.0.0.0 through 11.1.25162.02 insufficiently protect credentials when making requests to remote Excel resources. This vulnerability could allow attackers to interce...

CVE-2025-54395

MEDIUM CVSS 6.1 Aug 7, 2025

Netwrix Directory Manager (formerly Imanami GroupID) versions 11.0.0.0 through 11.1.25162.01 contain a cross-site scripting (XSS) vulnerability in authentication configuration data. This allows attack...

CVE-2025-54396

MEDIUM CVSS 5.4 Aug 7, 2025

CVE-2025-54396 is an SQL injection vulnerability in Netwrix Directory Manager (formerly Imanami GroupID) that allows authenticated users to execute arbitrary SQL commands. This affects organizations u...

CVE-2025-47748

MEDIUM CVSS 5.3 May 28, 2025

Netwrix Directory Manager versions 11.0.0.0 and earlier, plus versions after 11.1.25134.03, contain a hardcoded password vulnerability (CWE-259). This allows attackers with access to the system to pot...