Netwrix Directory Manager Cross-Site Scripting Vulnerability

Vulnerability

A cross-site scripting (XSS) vulnerability has been identified in Netwrix Directory Manager versions 11.0.0.0 prior to 11.1.25162.02. This vulnerability allows an unauthenticated attacker to inject malicious scripts into web pages viewed by other users. The issue arises because the application does not properly encode authentication error messages, creating an opportunity for reflected XSS attacks. Successful exploitation could lead to the compromise of user credentials.

Impact

Exploitation of this vulnerability could result in reflected cross-site scripting, allowing an attacker to inject malicious scripts that could be executed in the context of the user's browser session.

Remediation

Users are advised to update to Netwrix Directory Manager version 11.1.25162.02 or later. This update addresses the vulnerability by improving input sanitization to prevent cross-site scripting. After updating, it is recommended to rotate credentials for all configured Identity Stores and conduct a review of any exported scripts for potential security issues.

Added: Jul 17, 2025, 3:28 PM
Updated: Jul 17, 2025, 3:28 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.0
exploitability
6.4
remediation
0.0
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.