Vulnerabilities > Netwrix > High

DATE CVE VULNERABILITY TITLE RISK
2020-10-20 CVE-2020-15931 Information Exposure vulnerability in Netwrix Account Lockout Examiner
Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain Administrator (that is configured within the product in its installation state) by generating a single Kerberos Pre-Authentication Failed (ID 4771) event on a Domain Controller.
network
low complexity
netwrix CWE-200
7.5
2019-08-12 CVE-2019-14969 Incorrect Permission Assignment for Critical Resource vulnerability in Netwrix Auditor 9.7
Netwrix Auditor before 9.8 has insecure permissions on %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and sub-folders.
local
low complexity
netwrix CWE-732
7.8