CVE-2026-18556

high

Description

Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass. This issue affects N-central: through 2026.1.

References

https://www.helpnetsecurity.com/2026/08/10/cve-2026-18577-n-central-hotfix-2-msps/

https://www.databreachtoday.com/china-linked-hackers-use-n-able-flaw-in-ransomware-attacks-a-32506

https://www.databreachtoday.com/china-linked-hackers-exploit-n-able-flaw-in-ransomware-attacks-a-32506

https://www.theregister.com/security/2026/08/04/feds-get-3-days-to-patch-n-able-god-mode-flaw-under-active-exploit/5282894

https://www.sophos.com/en-us/blog/nable-ncentral-exploitation-results-in-rmm-tool-deployment

https://thehackernews.com/2026/08/cisa-adds-exploited-n-able-n-central.html

https://securityaffairs.com/196585/security/u-s-cisa-adds-a-n-able-n-central-flaw-to-its-known-exploited-vulnerabilities-catalog.html

https://www.securityweek.com/n-able-patches-vulnerability-exploited-to-hack-n-central-servers/

https://www.itsecurityguru.org/2026/08/03/critical-n-able-n-central-vulnerability-under-active-exploitation-as-hotfix-lands/?utm_source=rss&utm_medium=rss&utm_campaign=critical-n-able-n-central-vulnerability-under-active-exploitation-as-hotfix-lands

https://www.helpnetsecurity.com/2026/08/03/cve-2026-18577-n-able-n-central-vulnerability/

https://www.databreachtoday.com/n-able-flaw-exposes-msps-to-worst-case-scenario-a-32397

https://www.darkreading.com/vulnerabilities-threats/attackers-exploit-n-able-patch-bypass-flaw

https://www.bleepingcomputer.com/news/security/n-able-warns-of-n-central-auth-bypass-flaw-exploited-in-attacks/

https://thehackernews.com/2026/08/n-able-says-attackers-take-over-n.html

https://hackread.com/hackers-exploit-n-able-n-central-flaw-initial-fix/

https://www.n-able.com/blog/n-central-security-update-august-2-2026

Details

Source: Mitre, NVD

Published: 2026-08-01

Updated: 2026-08-05

Known Exploited Vulnerability (KEV)

Risk Information

CVSS v2

Base Score: 7.1

Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:N

Severity: High

CVSS v3

Base Score: 7.4

Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

Severity: High

CVSS v4

Base Score: 8.2

Vector: CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Severity: High

EPSS

EPSS: 0.0027