N-central auth bypass exploited against MSP consoles
N-able says CVE-2026-18577 let attackers remotely gain admin access to vulnerable N-central RMM servers and reach managed machines. Apply hotfix 2026.3.1.7, restrict access, and review remote-control activity.