CVE-2025-11366: N-central Authentication bypass via path traversal
Published Nov 12, 2025
·Updated
N-central < 2025.4 is vulnerable to authentication bypass via path traversal
Affected Software
2 affected components
N-able N-Central<2025.4
N-able N-Central<2025.4
Event History
Nov 12, 2025
CVE Published
via MITRE·03:33 PM
Data Sourced
via MITRE·03:33 PM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-11366?
CVE-2025-11366 is classified as a high severity vulnerability due to its potential to allow unauthorized access.
2
How do I fix CVE-2025-11366?
To fix CVE-2025-11366, upgrade N-able N-central to version 2025.4 or later.
3
What impact does CVE-2025-11366 have on affected systems?
CVE-2025-11366 can lead to unauthorized access, allowing attackers to bypass authentication and gain sensitive information.
4
Is CVE-2025-11366 being actively exploited?
As of now, there are no confirmed reports of active exploitation of CVE-2025-11366.
5
Who is affected by CVE-2025-11366?
Any organization using N-able N-central versions prior to 2025.4 is vulnerable to CVE-2025-11366.