Описание
The N-central server is vulnerable to an authentication bypass of the user interface. This vulnerability is present in all deployments of N-central prior to 2024.2.
This vulnerability was discovered through internal N-central source code review and N-able has not observed any exploitation in the wild.
Ссылки
- Vendor Advisory
- Release Notes
- Vendor Advisory
- Release Notes
Уязвимые конфигурации
Конфигурация 1Версия до 2024.2 (исключая)
cpe:2.3:a:n-able:n-central:*:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.28221
Средний
9.1 Critical
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-288
CWE-287
Связанные уязвимости
CVSS3: 9.1
github
больше 1 года назад
The N-central server is vulnerable to an authentication bypass of the user interface. This vulnerability is present in all deployments of N-central prior to 2024.2. This vulnerability was discovered through internal N-central source code review and N-able has not observed any exploitation in the wild.
EPSS
Процентиль: 96%
0.28221
Средний
9.1 Critical
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-288
CWE-287