CVE-2025-8876Patch(n-able / n-central)

MEDIUMCVSS 8.8 · HIGHCISA KEV

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch n-able n-central systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: before 2025.3.1.

4.0/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2025-08-20. Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Weakness type (CWE)
CWE-20CWE-78

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • n-central

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 2 signals
  • Peaked 1d ago at 1 mentions (2026-08-02); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
n-central

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-08-02: 1Mentions · 2026-08-04: 1Active Exploitation · 2026-08-04: 1Patch / Workaround · 2026-08-02: 1Patch / Workaround · 2026-08-04: 108-0208-04
Signal classification2 categories
Patch
150.0%
Active Exploitation
150.0%
Referenced assets1 URL
Classification over time
DateTotalLabels
2026-08-021
Patch1
2026-08-041
Active Exploitation1
Full discourse2 posts
  • RHTG@RightHandTech
    Active Exploitation

    Myth: Exploitations don’t happen in real-world environments. Truth: CISA confirmed active use of CVE-2025-8875 & CVE-2025-8876 in on-premises setups of N-central. Stay alert and make the necessary updates now! #CyberMyths #InfoSec

    Post summary

    The post cites CISA confirmation of the active exploitation of CVE-2025-8875 and CVE-2025-8876 in on-premises N‑central installations and urges users to apply updates promptly.

    0000038
    102 followersView on X
  • Vistem Solutions@VistemSolutions
    Patch

    CVE-2025-8876 has been published in the NVD—another reminder that vulnerability management starts with trusted sources, fast validation, and prioritized action. What to do now: - Review the NVD entry and vendor guidance - Identify affected assets and exposure - Apply patches or mitigations when available - Monitor for suspicious activity - Document remediation for compliance and audit readiness 𝗩𝗶𝘀𝘁𝗲𝗺 𝗘𝗹𝗲𝘃𝗮𝘁𝗲 𝗽𝗼𝘄𝗲𝗿𝗲𝗱 𝗯𝘆 𝗩𝗶𝘀𝘁𝗲𝗺𝗦𝗲𝗰𝘂𝗿𝗲𝗣𝗿𝗼 helps organizations move from CVE awareness to measurable risk reduction with vCISO-led strategy, prioritized remediation, and continuous monitoring. Contact: sales@vistem.com #Cybersecurity #NVD #CVE #VulnerabilityManagement #PatchManagement #RiskManagement #ThreatIntel #CyberResilience #VistemElevate #VistemSecurePro #VistemSolutions https://nvd.nist.gov/vuln/detail/CVE-2025-8876?utm_source=in_page&utm_medium=Vistem+Solutions%2C+Inc.&utm_campaign=publer

    Post summary

    The post encourages users to review the CVE's NVD entry, follow vendor guidance, apply available patches or mitigations, and monitor activity as part of structured vulnerability management.

    0000042
    81 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appn-ablen-central---

Explore more