VendorsNetwrixusercubeall versions
Vulnerabilities

Netwrix Usercube

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2023-41264
Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, leading to privilege escalation. This only occurs if the configuration omits the required restSettings.AuthorizedClientId and restSettings.AuthorizedSecret fields (for the POST /api/Deployment/ExportConfiguration and POST /api/Deployment endpoints).
Published 2023-11-28 · Modified
9.8EPSS 0.010