Home

Description

An Incorrect File Handling Permission bug exists on the N-central Windows Agent and Probe that, in the right circumstances, can allow a local low-level user to run commands with elevated permissions.

PUBLISHED Reserved 2025-09-10 | Published 2025-09-10 | Updated 2025-09-11 | Assigner N-able




HIGH: 7.0CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-276 Incorrect Default Permissions

Product status

Default status
unaffected

Any version before 2025.3
affected

Credits

WithSecure Exposure Management finder

References

documentation.n-able.com/...central_2025.3_Release_Notes.htm release-notes

me.n-able.com/...missions-could-lead-to-privilege-escalation vendor-advisory

cve.org (CVE-2025-10231)

nvd.nist.gov (CVE-2025-10231)

Download JSON