CVE-2024-52047: Trend Micro Apex One

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

A widget local file inclusion vulnerability in Trend Micro Apex One could allow a remote attacker to execute arbitrary code on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Affected products

  • Trend Micro Apex One: before 14.0.13139 (fixed in 14.0.13139); version 2019 only

Published 2024-12-31. Last modified 2026-06-17.