← Back to browse · API

CVE-2022-26871

Severity
CRITICAL
CVSS
9.8
EPSS
0.19633
Risk score
71.07
CISA KEV
Yes
PoC
No
Published
2022-03-29
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2022-31420, GHSA-J827-V44F-FW4P
Products
Trend Micro, Inc.:Trend Micro Apex Central 2019 (on-premise), SaaS, Trend Micro:Apex Central
Sources
cisa.gov CVE-2022-26871
euvd EUVD-2022-31420

Description

An arbitrary file upload vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to upload an arbitrary file which could lead to remote code execution.

References