CVE-2025-71217Patch(trendmicro / apex_one)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch trendmicro apex_one systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mechanism could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The following information is provided as informational only for CVE references, as these were addressed already via ActiveUpdate/SaaS updates in mid to late 2025 (SaaS 2507 & 2005 Yearly Release).

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-346

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • apex_one

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
apex_one

1 version affected across 1 product

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-05: 1Patch / Workaround · 2026-03-05: 1Technical Details · 2026-03-05: 103-05
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
Full discourse1 post
  • iototsecnews@iototsecnews
    Patch

    Trend Micro Apex One の脆弱性 CVE-2025-71210/71211 などが FIX:RCE のおそれ https://iototsecnews.jp/2026/02/27/critical-trend-micro-apex-one-vulnerabilities-allow-remote-malicious-code-execution/ Trend Micro の Apex One において、合計で 8 件の脆弱性 CVE-2025-71210~CVE-2025-71217 が修正されました。最も深刻なのは、管理コンソールのディレクトリ・トラバーサルの脆弱性CVE-2025-71210/71211 であり、未認証のリモート攻撃者によるサーバ上での任意のコード実行 (RCE) が可能になります。その他にも、Windows/macOS のエージェントにおけるローカル権限昇格 (LPE) の脆弱性も修正されています。オンプレミス版 (Apex One 2019) を利用している組織は、直ちに Critical Patch Build 14136 を適用する必要があると、同社は指摘しています。SaaS 版の利用者は、エージェントが Build 14.0.20315 以降であることを確認する必要があります。 #ApexOne #CVE202571210 #CVE202571211 #CVE202571212 #CVE202571213 #CVE202571214 #CVE202571215 #CVE202571216 #CVE202571217 #TrendMicro #Vulnerability

    Post summary

    The article reports that Trend Micro has fixed eight CVEs in Apex One, including RCE and LPE flaws, and urges users to apply the specified Critical Patch Builds to mitigate the risk.

    01000188
    483 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Apptrendmicroapex_one-macos-
Apptrendmicroapex_one-macos-

Explore more