logo

Trend Micro fixed a remote code execution in Apex Central

ID: 6be50200-413f-5ec4-b157-47810d3ea991

STIX ID: report--6be50200-413f-5ec4-b157-47810d3ea991

Feed Name: Security Affairs

Threat Score
85/100

Date Published: 2026-01-09

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

Trend Micro patched three vulnerabilities in its Apex Central on-premise console: a critical unauthenticated LoadLibraryEX remote code execution (CVE-2025-69258, CVSS 9.8) that can lead to SYSTEM-level code execution, and two denial-of-service issues (CVE-2025-69259 and CVE-2025-69260, CVSS 7.5). The issues were disclosed by Tenable with PoC code and Trend Micro urges customers to apply fixes, limit remote access, and update security controls; the report also references prior Apex One RCEs that were observed being exploited in the wild.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.