NCSC-2026-0275 [1.00] [M/H] Kwetsbaarheden verholpen in N-able N-central
Actively exploited. At least one CVE in this advisory is listed in the CISA Known Exploited Vulnerabilities catalog — exploitation has been observed in the wild. Treat remediation as urgent.
N-able heeft kwetsbaarheden verholpen in N-able N-central tot en met versie 2026.3.1. De kwetsbaarheden betreffen bypass van authenticatie in N-able N-central. In versies tot en met 2026.1 kan een aanvaller de authenticatiecontroles omzeilen door een alternatieve route binnen de applicatie te benutten. In versies tot en met 2026.3.1 is een onvolledige patch voor de kwetsbaarheid met kenmerk CVE-2026-18556 geïntroduceerd die authenticatieomzeiling en overname van accounts mogelijk maakt. Dit issue heeft kenmerk CVE-2026-18577 toegewezen gekregen. Hierdoor kan een aanvaller ongeautoriseerd toegang krijgen tot gebruikersaccounts en het systeem controleren. Alle implementaties die de genoemde versies gebruiken, zijn kwetsbaar. N-able meldt dat misbruik van de kwetsbaarheid is ontdekt en hierop gebruikers heeft geïnformeerd.
Details
Original advisory: https://advisories.ncsc.nl/advisory?id=NCSC-2026-0275
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Exploitation confirmedCVE-2026-18556Already exploited in the wild (CISA KEV) — the prediction phase is over. Patch now. Riskier than 19% of all scored CVEs.
- Exploitation confirmedCVE-2026-18577Already exploited in the wild (CISA KEV) — the prediction phase is over. Patch now. Riskier than 71% of all scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-18556 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-18577 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- highexploitedCISA Adds One Known Exploited Vulnerability to Catalogcisa
- medium[NEU] [mittel] N-able N-Central: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungencert-bund
- criticalexploitedCVE-2026-18577: N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerabilitycisa-kev
- unknownexploitedCVE-2026-18577: An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover i…nvd
- unknownCVE-2026-18556: Authentication bypass using an alternate path or channel vulnerability in N-able N-central all…nvd
Recent advisories for Kwetsbaarheden verholpen in
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownNCSC-2026-0273 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Campaign Classicncsc-nl · 2026-07-31
- unknownNCSC-2026-0272 [1.00] [M/H] Kwetsbaarheden verholpen in JFrog Artifactoryncsc-nl · 2026-07-31
More from NCSC-NL Advisories
- unknownNCSC-2026-0268 [1.01] [M/H] Kwetsbaarheid verholpen in SQLite door SQLite Consortium (ingetrokken)2026-08-03
- unknownNCSC-2026-0274 [1.00] [M/H] Kwetsbaarheid verholpen in SolarWinds Web Help Desk2026-07-31
- unknownNCSC-2026-0273 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Campaign Classic2026-07-31
- unknownNCSC-2026-0272 [1.00] [M/H] Kwetsbaarheden verholpen in JFrog Artifactory2026-07-31
- unknownNCSC-2026-0271 [1.00] [M/H] Vulnerability fixed in Cisco Secure Firewall Management Center2026-07-30