PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Dec 24, 2025

N-able N-central < 2024.2 - Authentication Bypass Detection

Est. Time~10 seconds
Scan TypeGroup Scan
Targetsurl
CostFree
2.9k
Times Used
continuous scan runs
0
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2024-28200
9.1
CVSScritical
Exploitable remotely over the internet · no authentication required.

The N-central server is vulnerable to an authentication bypass of the user interface. This vulnerability is present in all deployments of N-central prior to 2024.2. This vulnerability was discovered through internal N-central source code review and N-able has not observed any exploitation in the wild.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
N-centralby N-able
<2024.2
n-centralby n-able
AFFECTED< 2024.2SAFE ✓≥ 2024.2
Updated Sep 9, 2026View on NVD →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

N-able N-central < 2024.2 - Authentication Bypass Detection CVE-2024-28200 Scanner | S4E