CVE-2025-54397

MEDIUM

Netwrix Directory Manager 11.0.0.0-11.1.25162.02 - Authenticated Sensitive Information Exposure via Sent Data

Title source: llm
STIX 2.1

Description

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 inserts Sensitive Information Into Sent Data to authenticated users.

Scores

CVSS v3 4.3
EPSS 0.0023
EPSS Percentile 14.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-284
Status published
Products (1)
netwrix/directory_manager 11.0.0.0 - 11.1.25162.02
Published Aug 07, 2025
Tracked Since Feb 18, 2026