CVE-2023-25147: Trend Micro Apex One
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
An issue in the Trend Micro Apex One agent could allow an attacker who has previously acquired administrative rights via other means to bypass the protection by using a specifically crafted DLL during a specific update process. Please note: an attacker must first obtain administrative access on the target system via another method in order to exploit this.
Affected products
- Trend Micro Apex One: before 14.0.11960 (fixed in 14.0.11960); version 2019 only
Published 2023-03-10. Last modified 2026-06-17.