CVE-2025-49155
Trend Micro Apex One Data Loss Prevention Uncontrolled Search Path Remote Code Execution Vulnerability
Severity Score
8.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track*
*SSVC
Descriptions
An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module could allow an attacker to inject malicious code leading to arbitrary code execution on affected installations.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Trend Micro Apex One Security Agent. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw exists within the Data Loss Prevention module. The issue results from loading a DLL from an uncontrolled search path. An attacker can leverage this vulnerability to execute code in the context of the current user.
*Credits:
Xavier DANEST - Decathlon
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track*
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2025-06-02 CVE Reserved
- 2025-06-11 CVE Published
- 2025-06-17 CVE Updated
- 2025-06-18 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-427: Uncontrolled Search Path Element
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://success.trendmicro.com/en-US/solution/KA-0019917 | ||
https://www.zerodayinitiative.com/advisories/ZDI-25-362 |
|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Trend Micro, Inc. Search vendor "Trend Micro, Inc." | Trend Micro Apex One Search vendor "Trend Micro, Inc." for product "Trend Micro Apex One" | < 14.0.0.14002 Search vendor "Trend Micro, Inc." for product "Trend Micro Apex One" and version " < 14.0.0.14002" | en |
Affected
| ||||||
Trend Micro, Inc. Search vendor "Trend Micro, Inc." | Trend Micro Apex One As A Service Search vendor "Trend Micro, Inc." for product "Trend Micro Apex One As A Service" | >= SaaS < 14.0.14492 Search vendor "Trend Micro, Inc." for product "Trend Micro Apex One As A Service" and version " >= SaaS < 14.0.14492" | en |
Affected
|