SECURITY·중요도 8·2026. 08. 03.·The Hacker News

N-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete

── KO ──────────────────

N-able, N-central 서버에서 공격자가 인증 우회 공격으로 원격 접근을 성공했다고 발표했다.

N-able은 N-central에서 인증 우회 취약점을 통해 공격자들이 원격 관리 접근 권한을 획득하고 고객 시스템에 접근했다고 밝혔다. 최초의 수정이 불완전하여 CVE-2026-18577이 영향을 미치는 N-central 버전은 2026.3.1.7 이전의 빌드들이다. N-able은 2026.3.1.7 버전을 8월 2일에 출시하여 영향을 받지 않는 첫 번째 버전으로 제공했다.


── EN ──────────────────

N-able announced that attackers exploited an authentication bypass in N-central servers for remote access.

N-able reported that attackers gained remote administrative access through an authentication bypass vulnerability in N-central. The first fix was incomplete, and CVE-2026-18577 affects N-central builds prior to 2026.3.1.7. N-able released version 2026.3.1.7 on August 2 as the first unaffected build.

원문 보기 →목록으로