9.4
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H
Description
A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.
Basic Information
ID
CVE-2025-54948
Source
trendmicro
Published
Aug 5, 2025 at 13:00
Modified
Aug 13, 2025 at 15:02
Affected Product
Vendor
Trend Micro, Inc.
Product
Trend Micro Apex One
Version
2019 (14.0)
Affected Versions
Trend Micro, Inc. Trend Micro Apex One 2019 (14.0)