N Central

Vendor:

First CVE: Aug 4, 2023 · Active for 2 years

13
Total CVEs
More Total CVEs than 91% of tracked products
4.3
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
8.3
Avg CVSS
Higher Avg CVSS than 73% of tracked products
15.4%
KEV Rate
Higher KEV Rate than 98% of tracked products

Trends Over Time

The number and severity of CVEs published that impact N Central over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 4, 2023
2 years ago
Most Recent CVE
Nov 12, 2025
254 days ago

CVE Severity & Scoring

N Central13 CVEs
All CVEs352,294 CVEs
MediumHighCritical
Attack Vector
Local3 (23.1%)
Network10 (76.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (92.3%)
High1 (7.7%)
Unknown0 (0.0%)
User Interaction
None13 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low5 (38.5%)
High0 (0.0%)
None8 (61.5%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (13 CVEs).

13 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: before 2025.3.1.
Aug 14, 20258.873YESNO
Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1.
Aug 14, 20257.870YESNO
N-central < 2025.4 can generate sessionIDs for unauthenticated users This issue affects N-central: before 2025.4.
Nov 12, 20256.969NOYES
N-central versions < 2025.4 are vulnerable to multiple XML External Entities injection leading to information disclosure
Nov 12, 20257.567NOYES
The N-central server is vulnerable to an authentication bypass of the user interface. This vulnerability is present in all deployments of N-central prior to 2024.2. This vulnerabi
Jul 1, 20249.839NOYES
The N-central Software Probe < 2025.4 is vulnerable to Remote Code Execution via deserialization
Nov 12, 20259.833NONO
N-central < 2025.4 is vulnerable to authentication bypass via path traversal
Nov 12, 20259.832NONO
An issue discovered in N-able N-central before 2023.6 and earlier allows attackers to gain escalated privileges via API calls.
Feb 8, 20249.828NONO
An Incorrect File Handling Permission bug exists on the N-central Windows Agent and Probe that, in the right circumstances, can allow a local low-level user to run commands with el
Sep 10, 20257.826NONO
On N-central, it is possible for any authenticated user to read, write and modify syslog configuration across customers on an N-central server. This vulnerability is present in all
Aug 21, 20258.325NONO

Exploit Exposure

Signals from CVEs in this product scope (13 CVEs).

CISA KEV
2 CVEs
15.4% of CVEs· 98th percentile
Metasploit
2 CVEs
15.4% of CVEs· 97th percentile
Nuclei
3 CVEs
23.1% of CVEs· 98th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (13 CVEs).

Media Mentions

Signals from CVEs in this product scope (13 CVEs).

Top CNAs Publishing CVEs For N Central

Top CWEs

Versions

No cataloged versions.