N-central
Coverage of N-central in the Nexus archive.
- N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist
N-able released hotfixes for N-central due to ongoing exploitation of a security flaw in its Remote Monitoring and Management (RMM) product. The company stated these proactive protections are expanding in response to threat actors evolving their attack techniques.
- N-able warns of N-central auth bypass flaw exploited in attacks
N-able is warning customers that hackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) affecting both hosted and on-premises N-central servers. The flaw allows attackers to bypass authentication mechanisms in N-central systems.
- N-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete
N-able reported that attackers exploited an authentication bypass in N-central to gain remote administrative access to customer systems. The initial fix for CVE-2026-18577 was incomplete, and the first unaffected version, build 2026.3.1.7, was released on August 2.