Authentication bypass using an alternate path or channel in N-central - CVE-2026-18577
Published: August 3, 2026
Vulnerability details
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to missing authentication checks caused by an incomplete fix for #VU140801 (CVE-2026-18556). A remote attacker can bypass authentication process and compromise the affected system.
Note, the vulnerability is being actively exploited in the wild.