CVE-2020-25617: SolarWinds N-central

High severity, CVSS 8.8. EPSS: 3.3% chance of exploitation in the next 30 days.

An issue was discovered in SolarWinds N-Central 12.3.0.670. The AdvancedScripts HTTP endpoint allows Relative Path Traversal by an authenticated user of the N-Central Administration Console (NAC), leading to execution of OS commands as root.

Affected products

Published 2020-12-16. Last modified 2026-06-17.