N‑able Patches Vulnerability Exploited to Hack N-central Servers

https://www.securityweek.com/wp-content/uploads/2026/08/N-Able.jpeg

N‑able has released patches for a vulnerability that has been exploited in the wild against users of its N-central remote monitoring and management (RMM) product.

The vulnerability, tracked as CVE-2026-18577, has been described as an authentication bypass issue that can be exploited to take over accounts in N-central versions prior to 2026.3.1.7. Both on-premises and cloud-hosted deployments are affected.

N-central is widely used by MSPs to monitor, patch, and remotely access customer servers and endpoints.

CVE-2026-18577 is not a new zero-day. Instead, N‑able has described it as a new method to exploit a previously patched vulnerability tracked as CVE-2026-18556.

It appears threat actors bypassed the patch for CVE-2026-18556 and started exploiting it in late July. The vendor initially saw an increase in licensing issues on July 31 and confirmed exploitation of CVE-2026-18577 on August 2.

Exploitation of the vulnerability has allowed attackers to gain admin access to the hacked...

Copyright of this story solely belongs to securityweek.com. To see the full text click HERE

Read more