CVE-2025-48746: Medium severity netwrix directory manager vulnerability
Published May 28, 2025
·Updated
Netwrix Directory Manager (formerly Imanami GroupID) v.11.0.0.0 and before, as well as after v.11.1.25134.03 lacks Authentication for a Critical Function.
Affected Software
3 affected components
Netwrix Directory Manager<11.0.0.0, >11.1.25134.03
Netwrix Directory Manager<=11.0.0.0
Netwrix Directory Manager>=11.1.25134.03
Event History
May 28, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-48746?
CVE-2025-48746 is classified as a critical vulnerability due to its lack of authentication for a critical function.
2
How do I fix CVE-2025-48746?
To mitigate CVE-2025-48746, it is recommended to upgrade to a version of Netwrix Directory Manager later than v.11.1.25134.03.
3
What versions of Netwrix Directory Manager are affected by CVE-2025-48746?
CVE-2025-48746 affects Netwrix Directory Manager versions 11.0.0.0 and versions before 11.1.25134.03.
4
What potential impact does CVE-2025-48746 have on systems?
Exploitation of CVE-2025-48746 can allow unauthorized access to critical functions, leading to data breaches and security incidents.
5
Is there a known exploit for CVE-2025-48746?
As of now, there are no publicly disclosed exploits for CVE-2025-48746, but its critical nature poses a significant risk.