CVE-2025-71212
גבוהה 7.8
תיאור (מקור, אנגלית)
A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
מדדים
- CVSS 3.1
-
7.8 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 000) נכון ל-1/10/2026
- CWE
- CWE-59
מוצרים מושפעים
trendmicro: apex one
קישורים
- https://success.trendmicro.com/en-US/solution/KA-0022458 Vendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-26-138/ Third Party Advisory