EXPOSURES › CVE-2026-18577
CVE-2026-18577
HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
⌖ EXPLOITED IN THE WILD
SHAME 50/100
exploited-in-wild
N-able's N-central suffered an authentication bypass vulnerability actively exploited in the wild, allowing account takeover despite a previous patch attempt.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
PLAYERS IMPLICATED
DESCRIPTION
N-able N-central contains an authentication bypass using an alternate path or channel allows for authentication bypass and account takeover in N-central. This vulnerability is the result of an incomplete patch for CVE-2026-18556.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.