N-able

N-central

18 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warnung Medienbericht
  • EPSS 0.41%
  • Veröffentlicht 06.09.2026 02:15:28
  • Zuletzt bearbeitet 09.09.2026 05:18:19

N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.

Medienbericht
  • EPSS 0.29%
  • Veröffentlicht 05.09.2026 19:17:50
  • Zuletzt bearbeitet 08.09.2026 19:16:41

A vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs. This is fixed in N-central 2026.3 HF3 and 2026.4

Medienbericht
  • EPSS 0.3%
  • Veröffentlicht 05.09.2026 19:16:56
  • Zuletzt bearbeitet 08.09.2026 19:16:41

An authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs

Warnung Medienbericht
  • EPSS 2.53%
  • Veröffentlicht 02.08.2026 22:06:18
  • Zuletzt bearbeitet 04.08.2026 14:27:12

An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1

Warnung Medienbericht
  • EPSS 0.49%
  • Veröffentlicht 01.08.2026 20:16:37
  • Zuletzt bearbeitet 05.08.2026 05:16:46

Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass. This issue affects N-central: through 2026.1.

  • EPSS 0.58%
  • Veröffentlicht 12.11.2025 15:34:54
  • Zuletzt bearbeitet 14.11.2025 19:31:50

The N-central Software Probe < 2025.4 is vulnerable to Remote Code Execution via deserialization

  • EPSS 0.56%
  • Veröffentlicht 12.11.2025 15:33:25
  • Zuletzt bearbeitet 14.11.2025 19:32:19

N-central < 2025.4 is vulnerable to authentication bypass via path traversal

  • EPSS 30.7%
  • Veröffentlicht 12.11.2025 15:30:38
  • Zuletzt bearbeitet 15.12.2025 15:15:47

N-central versions < 2025.4 are vulnerable to multiple XML External Entities injection leading to information disclosure

Medienbericht
  • EPSS 36.29%
  • Veröffentlicht 12.11.2025 15:27:25
  • Zuletzt bearbeitet 15.04.2026 00:35:42

N-central < 2025.4 can generate sessionIDs for unauthenticated users This issue affects N-central: before 2025.4.

  • EPSS 0.13%
  • Veröffentlicht 10.09.2025 13:34:41
  • Zuletzt bearbeitet 26.09.2026 00:10:00

An Incorrect File Handling Permission bug exists on the N-central Windows Agent and Probe that, in the right circumstances, can allow a local low-level user to run commands with elevated permissions.