netwrix CVE Vulnerabilities & Metrics

Focus on netwrix vulnerabilities and metrics.

Last updated: 18 May 2025, 22:25 UTC

About netwrix Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with netwrix. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total netwrix CVEs: 4
Earliest CVE date: 12 Aug 2019, 19:15 UTC
Latest CVE date: 03 Apr 2025, 20:15 UTC

Latest CVE reference: CVE-2025-26817

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 1

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): -100.0%
Year Variation (Calendar): 0.0%

Month Growth Rate (30-day Rolling): -100.0%
Year Growth Rate (365-day Rolling): 0.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical netwrix CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 1.73

Max CVSS: 6.9

Critical CVEs (≥9): 0

CVSS Range vs. Count

Range Count
0.0-3.9 3
4.0-6.9 1
7.0-8.9 0
9.0-10.0 0

CVSS Distribution Chart

Top 5 Highest CVSS netwrix CVEs

These are the five CVEs with the highest CVSS scores for netwrix, sorted by severity first and recency.

All CVEs for netwrix

CVE-2025-26817 netwrix vulnerability CVSS: 0 03 Apr 2025, 20:15 UTC

Netwrix Password Secure 9.2.0.32454 allows OS command injection.

CVE-2023-41264 netwrix vulnerability CVSS: 0 28 Nov 2023, 17:15 UTC

Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, leading to privilege escalation. This only occurs if the configuration omits the required restSettings.AuthorizedClientId and restSettings.AuthorizedSecret fields (for the POST /api/Deployment/ExportConfiguration and POST /api/Deployment endpoints).

CVE-2022-31199 netwrix vulnerability CVSS: 0 08 Nov 2022, 01:15 UTC

Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Auditor server and agents installed on monitored systems. The remote code execution vulnerabilities exist within the underlying protocol used by the component, and potentially allow an unauthenticated remote attacker to execute arbitrary code as the NT AUTHORITY\SYSTEM user on affected systems, including on systems Netwrix Auditor monitors.

CVE-2019-14969 netwrix vulnerability CVSS: 6.9 12 Aug 2019, 19:15 UTC

Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders. In addition, the service Netwrix.ADA.StorageAuditService (which writes to that directory) does not perform proper impersonation, and thus the target file will have the same permissions as the invoking process (in this case, granting Authenticated Users full access over the target file). This vulnerability can be triggered by a low-privileged user to perform DLL Hijacking/Binary Planting attacks and ultimately execute code as NT AUTHORITY\SYSTEM with the help of Symbolic Links.