logo

Critical 9.3 CVSS Flaws Uncovered in Netwrix Password Secure

ID: f37a9e1c-3b3e-52ff-a146-6a010bd238c3

STIX ID: report--f37a9e1c-3b3e-52ff-a146-6a010bd238c3

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-03-21

Date Updated: 2026-04-23

Author: Ddos

...
...

Netwrix published an urgent advisory for Netwrix Password Secure after finding multiple high-severity flaws — a CVSS 9.0 desktop client RCE via malformed requests, a CVSS 9.3 server RCE (requiring privileged local access), and a CVSS 7.1 DoS — which could allow credential compromise or service disruption; no active exploitation has been observed and Netwrix released version 26.3.100 with fixes and recommends immediate updates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.