CVE-2025-49156
- EPSS 0.13%
- Veröffentlicht 17.06.2025 18:42:39
- Zuletzt bearbeitet 09.09.2025 15:24:11
A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalation privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the ta...
CVE-2025-49155
- EPSS 0.79%
- Veröffentlicht 17.06.2025 18:42:31
- Zuletzt bearbeitet 09.09.2025 15:24:13
An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module could allow an attacker to inject malicious code leading to arbitrary code execution on affected installations.
CVE-2025-49154
- EPSS 0.11%
- Veröffentlicht 17.06.2025 18:42:10
- Zuletzt bearbeitet 06.10.2025 19:11:24
An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free Business Security could allow a local attacker to overwrite key memory-mapped files which could then have severe consequences for the security and stability o...
CVE-2024-58105
- EPSS 0.16%
- Veröffentlicht 25.03.2025 17:37:39
- Zuletzt bearbeitet 01.08.2025 15:23:01
A vulnerability in the Trend Micro Apex One Security Agent Plug-in User Interface Manager could allow a local attacker to bypass existing security and execute arbitrary code on affected installations. This CVE address an addtional bypass not cov...
CVE-2024-58104
- EPSS 0.16%
- Veröffentlicht 25.03.2025 17:37:28
- Zuletzt bearbeitet 01.08.2025 15:27:15
A vulnerability in the Trend Micro Apex One Security Agent Plug-in User Interface Manager could allow a local attacker to bypass existing security and execute arbitrary code on affected installations. Please note: an attacker must first obtain t...
CVE-2024-52050
- EPSS 0.48%
- Veröffentlicht 31.12.2024 16:15:26
- Zuletzt bearbeitet 31.12.2024 16:15:26
A LogServer arbitrary file creation vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the t...
CVE-2024-52047
- EPSS 1.07%
- Veröffentlicht 31.12.2024 16:15:25
- Zuletzt bearbeitet 29.07.2025 23:58:37
A widget local file inclusion vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the tar...
CVE-2024-39753
- EPSS 2%
- Veröffentlicht 22.10.2024 19:15:04
- Zuletzt bearbeitet 31.07.2025 16:28:15
An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target s...
CVE-2024-37289
- EPSS 0.63%
- Veröffentlicht 10.06.2024 22:15:12
- Zuletzt bearbeitet 16.06.2025 21:06:18
An improper access control vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target sys...
CVE-2024-36307
- EPSS 0.78%
- Veröffentlicht 10.06.2024 22:15:11
- Zuletzt bearbeitet 27.06.2025 14:50:02
A security agent link following vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to disclose sensitive information about the agent on affected installations. Please note: an attacker must first obtain th...