Nable Ncentral PreAuth RCE Flaw Exploited in the Wild
News Source : Internet
News Summary
- The u.s. Cybersecurity and Infrastructure Security Agency added a maximum-severity security flaw to its Known Exploited Vulnerabilities catalog.
- The vulnerability in question is CVE-2026-86218 (CVSS score: 10.0), which has been described as a case of static code injection.
- The development came shortly after Huntress said it commenced an investigation following the compromise of a customer's fully patched N-central production environment on September 4, 2026.
- However, it remains unclear if the intrusion involved this vulnerability or two other vulnerabilities.
The U.S.
Never miss a story from us, subscribe to our newsletter