Skip to main content

Actively exploited

Listed in CISA’s Known Exploited Vulnerabilities catalog since August 13, 2025.

CVE-2025-8875

N-able N-Central Insecure Deserialization Vulnerability

N-able · N-Central

Added to KEV August 13, 2025

Alert details

Source feed
CISA KEV
CVE ID
CVE-2025-8875
Affected products
N-Central · N-able N-Central · N-able

What happened

N-able N-Central contains an insecure deserialization vulnerability that could lead to command execution.

What it means for your business

N-able N-Central is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2025-8875). N-able N-Central contains an insecure deserialization vulnerability that could lead to command execution. CISA remediation due date: 2025-08-20. PremierePC tracks KEV alerts for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Required action

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CISA due date: August 20, 2025

Sources

Related briefs

Actively exploited (KEV)

CVE-2026-86218

N-able N-central Static Code Injection Vulnerability

N-able N-central is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-86218). N-able N-central contains a static code injection vulnerability that could allow for pre-authentication remote code execution. CISA remediation due date: 2026-09-11. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)

CVE-2026-88779

Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Citrix NetScaler is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-88779). Citrix NetScaler ADC (formerly Citrix ADC) and Citrix NetScaler Gateway (formerly Citrix Gateway) contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow for a denial of service. CISA remediation due date: 2026-10-07. If you need help checking exposure, call (864) 335-9223.

HighMicrosoft MSRC

CVE-2025-10502

Heap buffer overflow in ANGLE in Microsoft Edge vulnerability

Heap buffer overflow in ANGLE in Microsoft Edge vulnerability (CVE-2025-10502) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.

HighMicrosoft MSRC

CVE-2026-96940

Microsoft Exchange Server Elevation of Privilege vulnerability

Microsoft Exchange Server Elevation of Privilege vulnerability (CVE-2026-96940) was added to Microsoft’s security update guidance. Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.