CVE-2024-39753: Trend Micro Apex One

High severity, CVSS 7.5. EPSS: 2% chance of exploitation in the next 30 days.

An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected products

  • Trend Micro Apex One: before 14.0.13139 (fixed in 14.0.13139); version 2019 only

Published 2024-10-22. Last modified 2026-06-17.