Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-18515 | An insecure deserialization operation in Trend Micro Apex Central below versions 8.0.7007 could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49220 but is in a different method. |
Mon, 08 Sep 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows |
|
| Weaknesses | CWE-502 | |
| CPEs | cpe:2.3:a:trendmicro:apex_central:2019:-:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_3752:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_5158:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6016:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6288:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6394:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6481:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6511:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6571:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6658:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6660:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6890:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6955:*:*:-:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft
Microsoft windows |
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 17 Jun 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Jun 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An insecure deserialization operation in Trend Micro Apex Central below versions 8.0.7007 could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49220 but is in a different method. | |
| First Time appeared |
Trendmicro
Trendmicro apex Central |
|
| Weaknesses | CWE-477 | |
| CPEs | cpe:2.3:a:trendmicro:apex_central:7007:*:*:en:*:windows_10:x86_64:1809 | |
| Vendors & Products |
Trendmicro
Trendmicro apex Central |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: trendmicro
Published:
Updated: 2026-02-26T17:50:31.992Z
Reserved: 2025-06-03T18:11:27.260Z
Link: CVE-2025-49219
Updated: 2025-06-17T18:34:42.502Z
Status : Analyzed
Published: 2025-06-17T18:15:26.903
Modified: 2025-09-08T21:06:23.910
Link: CVE-2025-49219
No data.
OpenCVE Enrichment
No data.
EUVD