Authentication Bypass in Trend Micro Endpoint Encryption PolicyServer
CVE-2025-49216
9.8CRITICAL
Key Information:
- Vendor
Trend Micro
- Vendor
- CVE Published:
- 17 June 2025
What is CVE-2025-49216?
An authentication bypass vulnerability discovered in Trend Micro Endpoint Encryption PolicyServer exposes a significant risk wherein attackers can gain unauthorized access to critical administrative functionalities. This allows them to manipulate product settings and configurations, potentially leading to broader system compromises on affected installations. Organizations using this software must assess their security measures and apply necessary updates to mitigate risks.
Affected Version(s)
Trend Micro Endpoint Encryption Policy Server 6.0 < 6.0.0.4013