Remote Code Execution Vulnerability in Trend Micro Apex One Management Console
CVE-2025-54987

9.4CRITICAL

Key Information:

Vendor
CVE Published:
5 August 2025

Badges

đź“° News Worthy

What is CVE-2025-54987?

A vulnerability in the management console of Trend Micro Apex One (on-premise) could permit pre-authenticated remote attackers to upload malicious code and execute arbitrary commands on compromised installations. This flaw poses a significant risk as it allows for unauthorized access to the system's resources, potentially leading to data breaches and further exploitation. It is crucial for users of Apex One to apply the necessary updates and patches to mitigate this threat effectively.

Affected Version(s)

Trend Micro Apex One 2019 (14.0) < 14.0.0.14039

News Articles

Critical Vulnerabilities in Trend Micro Endpoint Security Products

Trend Micro has released a mitigation tool addressing critical vulnerabilities in its endpoint security products. Users and administrators are advised to...

19 hours ago

Attackers Exploit Critical Trend Micro Apex One Zero-Day Flaw

Two critical vulnerabilities affect the security vendor's management console, one of which is under active exploitation. The company has updated cloud-based products but won't have a patch for its on-premises version until mid-August.

1 day ago

Trend Micro fixes two actively exploited Apex One RCE flaws

Trend Micro patched two critical Apex One flaws (CVE-2025-54948, CVE-2025-54987) exploited in the wild, allowing RCE via console injection.

1 day ago

References

CVSS V3.1

Score:
9.4
Severity:
CRITICAL
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • đź“°

    First article discovered by SecurityWeek

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-54987 : Remote Code Execution Vulnerability in Trend Micro Apex One Management Console