CVE-2026-18577
An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1
- Published Aug 2, 2026
- CVSS 8.2 high
- 14.6% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
- A fix is available
Affected software
In the news
- Active exploitation of remote monitoring and management platform within Australia Australian Cyber Security Centre ·