← Terug naar overzicht

N-able has patched a critical pre-authentication remote code execution vulnerability in N-central versions prior to 2026.3.1.14. The flaw allows an unauthenticated attacker to remotely execute arbitrary code on affected systems. All on-premises installations running vulnerable versions are affected. On-premises customers are strongly advised to upgrade immediately to N-central 2026.3 HF4. Hosted N-central (NCOD) instances have already been patched automatically. Active exploitation attempts have been observed in the wild. N-able recommends investigating Indicators of Compromise (IoCs) as a precautionary measure.

Affected products

  • N-able N-central

Categories

  • Enterprise Applications
  • Security Tools
  • Zero-Day Vulnerabilities