Skip to main content

Cybersecurity Weather

Global observatory

← Events

CVE-2026-18577

exploitation · critical · Evidence score 90

Vendor
N-able
Affected software
N-able N-central
Exploitation signal
Listed in CISA Known Exploited Vulnerabilities
CVSS
8.1
EPSS
0.04103

N-able N-central contains an authentication bypass using an alternate path or channel allows for authentication bypass and account takeover in N-central. This vulnerability is the result of an incomplete patch for CVE-2026-18556.

Provenance

  • CISA Known Exploited Vulnerabilities

    3 August 2026, 10:00 AM AEST

CVE-2026-18577 | Cyber Weather Index