← Back to browse · API

CVE-2025-49220

Severity
CRITICAL
CVSS
9.8
EPSS
0.02014
Risk score
39.9
CISA KEV
No
PoC
No
Published
2025-06-17
Modified
2026-02-26
First seen
2026-08-07
Aliases
EUVD-2025-18514, GHSA-VMW3-XQX8-H247
Products
Trend Micro, Inc.:Trend Micro Apex Central 8.0 <8.0.7007
Sources
euvd EUVD-2025-18514

Description

An insecure deserialization operation in Trend Micro Apex Central below version 8.0.7007 could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49219 but is in a different method.

References