CVE-2025-54394: Netwrix Directory Manager

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 has Insufficiently Protected Credentials for requests to remote Excel resources.

Affected products

  • Netwrix Directory Manager: from 11.0.0.0, before 11.1.25162.02 (fixed in 11.1.25162.02)

Published 2025-08-07. Last modified 2026-06-17.