Hard-Coded Password Vulnerability in Netwrix Directory Manager by Netwrix
CVE-2025-48748

10CRITICAL

Key Information:

Vendor

Netwrix

Vendor
CVE Published:
29 May 2025

What is CVE-2025-48748?

Netwrix Directory Manager, previously known as Imanami GroupID, is subject to a vulnerability due to a hard-coded password present in versions up to v.10.0.7784.0. This flaw could potentially enable unauthorized access to sensitive data, posing significant risks to organizations utilizing the software.

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.