MEDIUMVulnerability
Global

N-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete

·Source: The Hacker News

Updated:

Executive Summary

N-able said attackers exploited an authentication bypass in N-central to gain remote administrative access and reach the customer systems managed through those servers. Its first fix was incomplete. CVE-2026-18577 affects N-central builds prior to 2026.3.1.7. N-able shipped build 2026.3.1.7 on August 2 as the first unaffected version. N-central is the remote monitoring and management platform

Analysis

N-able said attackers exploited an authentication bypass in N-central to gain remote administrative access and reach the customer systems managed through those servers. Its first fix was incomplete. CVE-2026-18577 affects N-central builds prior to 2026.3.1.7. N-able shipped build 2026.3.1.7 on August 2 as the first unaffected version. N-central is the remote monitoring and management platform

Indicators of Compromise (1)

CVE (1)
CVE-2026-18577
Source Attribution

Originally published by The Hacker News on Aug 3, 2026.

Related Threats