CVE 9.4 CRITICAL

CVE-2025-54987_CVE-2025-54987

9.4 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H

Description

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations. This vulnerability is essentially the same as CVE-2025-54948 but targets a different CPU architecture.

Basic Information

ID CVE-2025-54987
Source trendmicro
Published Aug 5, 2025 at 13:00
Modified Aug 6, 2025 at 03:55

Affected Product

Vendor Trend Micro, Inc.
Product Trend Micro Apex One
Version 2019 (14.0)
Affected Versions Trend Micro, Inc. Trend Micro Apex One 2019 (14.0)

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.