Critical 9.3 CVSS Flaws Uncovered in Netwrix Password Secure
ID: f37a9e1c-3b3e-52ff-a146-6a010bd238c3
STIX ID: report--f37a9e1c-3b3e-52ff-a146-6a010bd238c3
Feed Name: securityonline.info
Threat Score
Netwrix published an urgent advisory for Netwrix Password Secure after finding multiple high-severity flaws — a CVSS 9.0 desktop client RCE via malformed requests, a CVSS 9.3 server RCE (requiring privileged local access), and a CVSS 7.1 DoS — which could allow credential compromise or service disruption; no active exploitation has been observed and Netwrix released version 26.3.100 with fixes and recommends immediate updates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
