Warning: Actively Exploited Vulnerability in N-Central, Patch Immediately!
ID: f1d89dea-3e07-5624-813a-84bc9152785b
STIX ID: report--f1d89dea-3e07-5624-813a-84bc9152785b
N-Able N-Central (versions prior to 2026.3.1.7) is affected by CVE-2026-18577, an authentication bypass vulnerability actively exploited to gain administrative access; attackers have used built-in RMM functionality for follow-on activity and Cloudflare-based tunnels for persistence. The vendor and the Centre for Cybersecurity Belgium recommend immediate installation of version 2026.3.1.7, enhanced monitoring, and consulting the advisory for IoCs and malicious IPs; patching does not remediate prior compromises.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
