CVE-2025-48747: Medium severity netwrix directory manager vulnerability
Netwrix Directory Manager (formerly Imanami GroupID) before and including v.11.0.0.0 and after v.11.1.25134.03 has Incorrect Permission Assignment for a Critical Resource.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48747?
CVE-2025-48747 has been classified as a critical severity vulnerability due to incorrect permission assignments for critical resources.
How do I fix CVE-2025-48747?
To fix CVE-2025-48747, update your installation of Netwrix Directory Manager to version 11.1.25134.04 or later.
Which versions of Netwrix Directory Manager are affected by CVE-2025-48747?
CVE-2025-48747 affects Netwrix Directory Manager versions up to and including 11.0.0.0 and versions after 11.1.25134.03.
What are the potential risks associated with CVE-2025-48747?
The risks of CVE-2025-48747 include unauthorized access to sensitive resources due to incorrect permission assignments.
Is it safe to use Netwrix Directory Manager while CVE-2025-48747 is unpatched?
Using Netwrix Directory Manager without applying the patch for CVE-2025-48747 poses significant security risks and should be avoided.