CVE-2026-18577

HIGH KEV

N-able N-central - Incomplete Patch Leads to Administrative Account Takeover

Title source: rule
STIX 2.1

Exploitation Summary

CVE-2026-18577 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added August 3, 2026. EIP tracks 2 public exploits from researchers including CreamyG31337, HORKimhab.

AI-analyzed exploit summary This repository provides a read-only PowerShell-based hunting tool for detecting post-exploitation artifacts related to CVE-2026-18577 and CVE-2026-18556 in N-able N-central. The script checks for indicators of compromise (IoCs) such as rogue Cloudflare Tunnel services, suspicious service paths, and Take Control log artifacts without modifying system state.

Description

An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1

Exploits (2)

github SCANNER
by CreamyG31337 · powershellpoc
https://github.com/CreamyG31337/ncentral-compromise-ioc-triage

This repository provides a read-only PowerShell-based hunting tool for detecting post-exploitation artifacts related to CVE-2026-18577 and CVE-2026-18556 in N-able N-central. The script checks for indicators of compromise (IoCs) such as rogue Cloudflare Tunnel services, suspicious service paths, and Take Control log artifacts without modifying system state.

Classification
Scanner 99%
Attack Type
Other
Complexity
Moderate
Reliability
Reliable
Target: N-able N-central (vulnerable versions prior to 2026.3.1.7)
No auth needed
Prerequisites: Access to a Windows endpoint managed by N-able N-central · Administrative privileges (for full artifact discovery)
mistral-large-3 · analyzed Aug 06, 2026 Full analysis →
github STUB
by HORKimhab · poc
https://github.com/HORKimhab/CVE-2026-18577

The repository contains no actual exploit code, technical details, or vulnerability analysis for CVE-2026-18577. It only includes a README with generic setup instructions, donation requests, and legal disclaimers, alongside a .gitignore file and a custom license.

Classification
Stub 95%
Attack Type
Other
Complexity
Trivial
Reliability
Theoretical
Target: unspecified
No auth needed
mistral-large-3 · analyzed Aug 04, 2026 Full analysis →

Scores

CVSS v3 8.1
EPSS 0.0410
EPSS Percentile 89.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation active
Automatable yes
Technical Impact total

Details

CISA KEV 2026-08-03
VulnCheck KEV 2026-08-02
ENISA EUVD EUVD-2026-52010
CWE
CWE-288
Status published
Products (4)
n-able/n-central 2026.3
N-able/N-central < 2026.3
n-able/n-central < 2026.3
N-able/N-central 2026.3.1.7
Published Aug 02, 2026
KEV Added Aug 03, 2026
Tracked Since Aug 03, 2026