CISA has warned that attackers are actively exploiting a critical authentication bypass vulnerability in N-able N-central. Tracked as CVE-2026-18577, the flaw affects N-central servers running versions earlier than 2026.3.1.7. N-central is a remote monitoring and management platform widely used by managed service providers to administer customer systems. Because the platform provides centralized access to many endpoint devices, a compromise could enable attackers to move across managed environments. CVE-2026-18577 is classified as an authentication bypass vulnerability via an alternate path or channel, mapped to CWE-288. N-able said the issue resulted from an incomplete patch for CVE-2026-18556, a previously addressed security...
Läs hela artikeln hos källan.
Kommentarer (0)
Inga kommentarer ännu. Bli först med att kommentera!