Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2026-18577 KEV An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1 N Central 2026.3+ Fix from $1,9502026-08-02 HIGH 7.4 CVE-2026-18556 KEV Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass. This issue affects N-centra… N Central after 2026.1 Fix from $1,9502026-08-01 CRITICAL 9.8 CVE-2025-11366 N-central < 2025.4 is vulnerable to authentication bypass via path traversal N Central 2025.4+ Fix from $2,3002025-11-12 CRITICAL 9.8 CVE-2025-11367 The N-central Software Probe < 2025.4 is vulnerable to Remote Code Execution via deserialization N Central 2025.4+ Fix from $2,3002025-11-12 HIGH 7.5 CVE-2025-11700EPSS 31% N-central versions < 2025.4 are vulnerable to multiple XML External Entities injection leading to information disclosure N Central 2025.4+ Fix from $1,9502025-11-12 HIGH 7.8 CVE-2025-10231 An Incorrect File Handling Permission bug exists on the N-central Windows Agent and Probe that, in the right circumstances, can allow a local low-lev… N Central 2025.3+ Fix from $1,9502025-09-10 HIGH 8.3 CVE-2025-7051 On N-central, it is possible for any authenticated user to read, write and modify syslog configuration across customers on an N-central server. This … N Central 2025.2+ Fix from $1,9502025-08-21 HIGH 8.8 CVE-2025-8876 KEV Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: before 2025.3.1. N Central 2025.3.1+ Fix from $1,9502025-08-14 HIGH 7.8 CVE-2025-8875 KEV Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1. N Central 2025.3.1+ Fix from $1,9502025-08-14 MEDIUM 5.3 CVE-2024-8510 N-central is vulnerable to a path traversal that allows unintended access to the Apache Tomcat WEB-INF directory. Customer data is not exposed. Thi… N Central 2024.6+ Fix from $1,6002025-03-17 CRITICAL 9.1 CVE-2024-5322 The N-central server is vulnerable to session rebinding of already authenticated users when using Entra SSO, which can lead to authentication bypass.… N Central 2024.3+ Fix from $2,3002024-07-01 CRITICAL 9.8 CVE-2024-28200 The N-central server is vulnerable to an authentication bypass of the user interface. This vulnerability is present in all deployments of N-central p… N Central 2024.2+ Fix from $2,3002024-07-01 HIGH 7.0 CVE-2023-37244 The affected AutomationManager.AgentService.exe application contains a TOCTOU race condition vulnerability that allows standard users to create a pse… Automation Manager 2.91.0.0+ Fix from $1,9502024-05-02 CRITICAL 9.8 CVE-2023-47132 An issue discovered in N-able N-central before 2023.6 and earlier allows attackers to gain escalated privileges via API calls. N Central 2023.7+ Fix from $2,3002024-02-08 HIGH 7.5 CVE-2023-47131 The N-able PassPortal extension before 3.29.2 for Chrome inserts sensitive information into a log file. Passportal 3.29.2+ Fix from $1,9502024-02-08 HIGH 7.0 CVE-2023-27470 BASupSrvcUpdater.exe in N-able Take Control Agent through 7.0.41.1141 before 7.0.43 has a TOCTOU Race Condition via a pseudo-symlink at %PROGRAMDATA%… Take Control 7.0.43+ Fix from $1,9502023-09-11 HIGH 7.0 CVE-2023-30297 An issue found in N-able Technologies N-central Server before 2023.4 allows a local attacker to execute arbitrary code via the monitoring function of… N Central 2023.4+ Fix from $1,9502023-08-04