CVE-2025-54393

MEDIUM

Netwrix Directory Manager 11.0.0.0-11.1.25162.02 - Authenticated Static Code Injection

Title source: llm
STIX 2.1

Description

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated users can obtain administrative access.

Scores

CVSS v3 5.4
EPSS 0.0022
EPSS Percentile 12.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-77
Status published
Products (1)
netwrix/directory_manager 11.0.0.0 - 11.1.25162.02
Published Aug 07, 2025
Tracked Since Feb 18, 2026