CVE-2020-24565: Trend Micro Apex One

Medium severity, CVSS 5.5. EPSS: 1.3% chance of exploitation in the next 30 days.

An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to disclose sensitive information to an unprivileged account on vulnerable installations of the product. An attacker must first obtain the ability to execute low-privileged code on the target in order to exploit these vulnerabilities. The subs affected in this vulnerability makes it unique compared to similar CVEs such as CVE-2020-24564 and CVE-2020-25770.

Affected products

  • Trend Micro Apex One: version 2019 only; version saas only

Published 2020-09-29. Last modified 2026-06-17.