Authentication Bypass in N-central Software by N-able
CVE-2026-86207

7.7HIGH

Key Information:

Vendor

N-able

Status
Vendor
CVE Published:
5 September 2026

What is CVE-2026-86207?

An authentication bypass vulnerability exists in N-central versions prior to 2026.3 HF 3, allowing unauthorized access to internal APIs. This flaw can enable attackers to exploit authentication weaknesses, potentially compromising sensitive information and system integrity. Users are encouraged to update to the latest version to remediate this issue and maintain robust security measures.

Affected Version(s)

N-central 0 < 2026.3.1.13

References

CVSS V4

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Michael Tigges of Huntress
Rashmi Harish of Rapid7
.