7.5
CVE-2025-69259
- EPSS 1.56%
- Veröffentlicht 08.01.2026 12:50:43
- Zuletzt bearbeitet 07.10.2026 09:10:00
- Erkennungen
A message unchecked NULL return value vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affected installations. Please note: authentication is not required in order to exploit this vulnerability..
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Trendmicro ≫ Apex Central Version 2019 Update - SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_3752 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_5158 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6016 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6288 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6394 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6481 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6511 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6571 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6658 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6660 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6890 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_6955 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_7007 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_7065 SwEdition -
Trendmicro ≫ Apex Central Version 2019 Update build_7141 SwEdition -
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.56% | 0.728 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Trendmicro | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.
CWE-346 Origin Validation Error
The product does not properly verify that the source of data or communication is valid.
CWE-476 NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
https://www.tenable.com/security/research/tra-2026-01
https://success.trendmicro.com/en-US/solution/KA-0022071
https://success.trendmicro.com/ja-JP/solution/KA-0022081