Wichtiger Hinweis: Informationen zum empfohlenen Update Ihrer N-able N-central-Instanz "N-central Hotfix - Immediate Action Required"

Wichtiger Hinweis: Informationen zum empfohlenen Update Ihrer N-able N-central-Instanz "N-central Hotfix - Immediate Action Required"

Vor Kurzem hat der Hersteller N-able über ein empfohlenes N-central-Update informiert. 
 


Update vom 06.08.2026:

Bitte entnehmen Sie der folgenden Hersteller-Nachricht vom 06.08.2026 weitere wichtige Handlungsempfehlungen zum zweiten Hotfix für Ihre N-able N-central-Instanz. 
--
We are writing to let you know that as our investigation into the recent N-central security vulnerability continues, we are proactively expanding protections in response to ongoing monitoring of threat actors as they evolve their attack techniques and explore new attack paths.  
This is not a duplicate of our previous communication. Hotfix 2 is required, even if the previous hotfix was applied.

We are sending the email below, immediately, to all N-central customers. All links are also included below.
If you need assistance, please contact our support team at https://me.n-able.com/

EMAIL:

Subject: URGENT: N-central Second Hotfix Required — Immediate Action Required
Trusted Partner,
As our investigation into the recent N-central security vulnerability continues, we are proactively expanding protections in response to ongoing monitoring of threat actors as they evolve their attack techniques. 
This is not a duplicate of our previous communication. Hotfix 2 is required, even if you already applied the earlier hotfix. Hotfix 2 supersedes Hotfix 1 with additional hardening measures to further protect you and your customers.
What You Need to Do:
We understand this is the second urgent request in a short period of time, and we don't take lightly the demands that places on your team. We are committed to supporting you through every step and our support team is standing by and ready to help you get upgraded quickly.
Protecting our customers and their end users is at the core of everything we do at N-able.  We will continue to communicate openly as our investigation progresses.
If you need assistance, please contact our support team at https://me.n-able.com/
For More Information:
  1. Blog: https://www.n-able.com/blog/n-central-security-update-august-6-2026
  2. Support: https://me.n-able.com/s/  
  3. CVE: https://www.cve.org/CVERecord?id=CVE-2026-18577  
  4. Uptime: https://uptime.n-able.com/


 
We are writing to notify you of a critical security issue we have identified that impacts all versions of N-central. A hotfix is now available and you must upgrade immediately to protect your environment and your customers.
Hotfix Details: 2026.3 HF1 Release Notes
What You Need to Do
·    N-central On-Premises Environments: You must upgrade to 2026.3.1.7 immediately.
·    N-central Hosted Environments: If you are on a hosted environment no action is needed; your instances are being upgraded.
·    If you have already attempted the upgrade and need assistance please contact support: https://me.n-able.com/, and continue working with them to resolve any upgrade questions.
Security Best Practices
While no software is immune to vulnerabilities despite rigorous development and security practices, staying proactive is your strongest defense. In addition to upgrading, we strongly encourage you to:
·    Ensure that you keep your N-central instance up to date.  N-able improves security in every release.
·    Enable and enforce MFA across all N-able accounts, especially your product admin account.
·    Monitor your environment closely for any unusual activity, particularly around Take Control and administrative access.
At N-able, your security and the security of your customers is our top priority. We are committed to transparency throughout this process and will continue to share updates as they become available.
If you need assistance, please contact our support team at https://me.n-able.com/
 
Thank you for your partnership.
 
 
 
Im Zusammenhang mit der Nachverfolgung von CVE-2026-18577 möchten wir Sie darauf hinweisen, dass Sie das folgende Service Template in Ihre N-central Server importieren können, um Systeme auf Indikatoren einer Kompromittierung zu überwachen:
 
 
Bitte beachten Sie: Ein unauffälliges Ergebnis ist keine Garantie dafür, dass Ihre Umgebung nicht betroffen ist. Die laufenden Untersuchungen können weitere Indikatoren ergeben. Wir empfehlen daher, das Template nur als einen Bestandteil Ihrer Prüfung zu verwenden und zusätzlich Ihre Umgebung, Protokolle und Kontoaktivitäten sorgfältig zu überprüfen.