N-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete
Overview
N-able reported that attackers exploited an authentication bypass vulnerability in its N-central platform, allowing unauthorized remote administrative access to customer systems. This issue, tracked as CVE-2026-18577, affects all N-central builds prior to version 2026.3.1.7. The initial fix released by N-able was incomplete, leading to successful exploitation of the flaw. The company released the first unaffected version on August 2, 2023, which highlights the critical need for users to ensure they are running the latest version to protect their systems. Organizations using N-central should take immediate action to update to version 2026.3.1.7 or later to mitigate the risk of these attacks.
Key Takeaways
- Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
- Affected Systems: N-central platform, affected versions prior to 2026.3.1.7
- Action Required: Update to N-central version 2026.
- Timeline: Disclosed on August 2, 2023
Original Article Summary
N-able said attackers exploited an authentication bypass in N-central to gain remote administrative access and reach the customer systems managed through those servers. Its first fix was incomplete. CVE-2026-18577 affects N-central builds prior to 2026.3.1.7. N-able shipped build 2026.3.1.7 on August 2 as the first unaffected version. N-central is the remote monitoring and management platform
Impact
N-central platform, affected versions prior to 2026.3.1.7
Exploitation Status
This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.
Timeline
Disclosed on August 2, 2023
Remediation
Update to N-central version 2026.3.1.7 or later to remediate the vulnerability.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to CVE, Vulnerability, Update, and 1 more.