9.4
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H
Description
A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations. This vulnerability is essentially the same as CVE-2025-54948 but targets a different CPU architecture.
Basic Information
ID
CVE-2025-54987
Source
trendmicro
Published
Aug 5, 2025 at 13:00
Modified
Aug 6, 2025 at 03:55
Affected Product
Vendor
Trend Micro, Inc.
Product
Trend Micro Apex One
Version
2019 (14.0)
Affected Versions
Trend Micro, Inc. Trend Micro Apex One 2019 (14.0)