{"id":"CVE-2025-8875","title":"Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1.","summary":"Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1.","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-502"],"vendor":"n-able","product":"n-central","affected":["n-central < 2025.3.1"],"patched":["n-central 2025.3.1"],"published":"2025-08-14","updated":"2026-09-24","sourceUpdated":"2026-09-24T13:10:00.320","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-8875","references":[{"url":"https://status.n-able.com/2025/08/13/announcing-the-ga-of-n-central-2025-3-1/","label":"a5532a13-c4dd-4202-bef1-e0b8f2f8d12b"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-8875","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.0171,"epssPercentile":0.76365,"kev":true,"kevDateAdded":"2025-08-13","kevDueDate":"2025-08-20","kevRansomware":false,"exploited":true,"exploits":{"github":1,"githubRepos":["https://github.com/rxerium/CVE-2025-8875-CVE-2025-8876"],"checkedAt":"2026-09-24T13:43:59.532Z"},"exploitAvailable":true,"zeroDay":true,"ingestedAt":"2026-09-24T13:43:25.659Z","slug":"CVE-2025-8875","body":"## Overview\n\nDeserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1.\n\n## Affected\n\n- `n-central < 2025.3.1`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `n-central 2025.3.1`","depth":"abyssal","depthScore":68,"depthScoreParts":{"impact":42.9,"likelihood":0.3,"exploitation":25,"ransomware":0},"changes":[]}