THREATOPS
THREAT OPSThreat News › CVE-2026-86218 | N-able N-central Pre-Authentication Remote Code Execution Vulnerability

CVE-2026-86218 | N-able N-central Pre-Authentication Remote Code Execution Vulnerability

medhorizon3Published 2026-09-16

<p>CVE-2026-86218 is a critical pre-authentication remote code execution vulnerability affecting N-able N-central. An unauthenticated attacker with network access to a vulnerable N-central server could exploit the vulnerability to execute code without user interaction. N-able assigned it a CVSS 4.0 score of 10.0, while NIST assigned it a CVSS 3.1 score of 9.8. CISA added CVE-2026-86218 to its Know

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://horizon3.ai/attack-research/vulnerabilities/cve-2026-86218/