Vulnerability Details CVE-2025-49155
An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module could allow an attacker to inject malicious code leading to arbitrary code execution on affected installations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.4%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2025-49155
-
cpe:2.3:a:trendmicro:apex_one:-
-
cpe:2.3:a:trendmicro:apex_one:14.0
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.12980
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.12994
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.13122
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.13131
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.13140
-
cpe:2.3:a:trendmicro:apex_one:14.0.0.13984
-
cpe:2.3:a:trendmicro:apex_one:14.0.12737
-
cpe:2.3:a:trendmicro:apex_one:14.0.12849
-
cpe:2.3:a:trendmicro:apex_one:14.0.13139
-
cpe:2.3:a:trendmicro:apex_one:14.0.14203