Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-18514 | An insecure deserialization operation in Trend Micro Apex Central below version 8.0.7007 could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49219 but is in a different method. |
Mon, 08 Sep 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows |
|
| Weaknesses | CWE-502 | |
| CPEs | cpe:2.3:a:trendmicro:apex_central:2019:-:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_3752:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_5158:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6016:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6288:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6394:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6481:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6511:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6571:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6658:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6660:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6890:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6955:*:*:-:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft
Microsoft windows |
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 18 Jun 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Jun 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An insecure deserialization operation in Trend Micro Apex Central below version 8.0.7007 could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49219 but is in a different method. | |
| First Time appeared |
Trendmicro
Trendmicro apex Central |
|
| Weaknesses | CWE-477 | |
| CPEs | cpe:2.3:a:trendmicro:apex_central:7007:*:*:en:*:windows_10:x86_64:1809 | |
| Vendors & Products |
Trendmicro
Trendmicro apex Central |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: trendmicro
Published:
Updated: 2026-02-26T17:50:31.672Z
Reserved: 2025-06-03T18:11:27.260Z
Link: CVE-2025-49220
Updated: 2025-06-17T18:34:40.411Z
Status : Analyzed
Published: 2025-06-17T18:15:27.033
Modified: 2025-09-08T21:06:21.787
Link: CVE-2025-49220
No data.
OpenCVE Enrichment
No data.
EUVD