Changeflow GovPing Data Privacy & Cybersecurity Netwrix Password Secure Vulnerabilities Allow C...
Priority review Notice Added Final

Netwrix Password Secure Vulnerabilities Allow Code Execution and DoS

Favicon for wid.cert-bund.de CERT-Bund Security Advisories
Published March 19th, 2026
Detected March 20th, 2026
Email

Summary

CERT-Bund has issued a security advisory for Netwrix Password Secure, detailing multiple vulnerabilities that could allow for code execution and denial-of-service attacks. The advisory affects versions prior to 26.3.100 and is rated as high severity.

What changed

CERT-Bund has published a security advisory (WID-SEC-2026-0793) concerning critical vulnerabilities in Netwrix Password Secure, specifically affecting versions prior to 26.3.100. These vulnerabilities, rated with a CVSS Base Score of 8.2, can be exploited by attackers to execute arbitrary code and perform denial-of-service (DoS) attacks on Windows systems. The advisory highlights the high severity of these issues.

Organizations using Netwrix Password Secure should immediately review their installed versions and apply available mitigations or updates to address these security risks. Failure to do so could lead to system compromise, data breaches, or service disruptions. While no remote attack vector is specified, the potential for code execution necessitates prompt action to secure affected systems and prevent potential exploitation.

What to do next

  1. Review Netwrix Password Secure version and apply available mitigations or updates.
  2. Assess potential impact of vulnerabilities on internal systems.

Source document (simplified)

[WID-SEC-2026-0793] Netwrix Password Secure: Mehrere Schwachstellen CVSS Base Score 8.2 (hoch) CVSS Temporal Score 7.1 (hoch) Remoteangriff nein Datum 19.03.2026 Stand 20.03.2026 Mitigation ja

Betroffene Systeme

Betriebssystem

  • Windows

Produktbeschreibung

Netwrix Password Secure ist eine Lösung zur zentralen Verwaltung und sicheren Speicherung von Passwörtern und sensiblen Informationen.

Produkte

19.03.2026
- Netwrix Password Secure <26.3.100

Angriff

Angriff

Ein Angreifer kann mehrere Schwachstellen in Netwrix Password Secure ausnutzen, um beliebigen Programmcode auszuführen, und um einen Denial of Service Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Source

Analysis generated by AI. Source diff and links are from the original.

Classification

Agency
CERT-Bund
Published
March 19th, 2026
Instrument
Notice
Legal weight
Non-binding
Stage
Final
Change scope
Substantive
Document ID
WID-SEC-2026-0793

Who this affects

Applies to
Employers
Industry sector
5182 Data Processing & Hosting 5112 Software & Technology
Activity scope
Vulnerability Management System Security
Geographic scope
Germany DE

Taxonomy

Primary area
Cybersecurity
Operational domain
IT Security
Compliance frameworks
NIST CSF
Topics
Vulnerability Management Information Security

Get Data Privacy & Cybersecurity alerts

Weekly digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get alerts for this source

We'll email you when CERT-Bund Security Advisories publishes new changes.

Free. Unsubscribe anytime.