Vulnerability Details CVE-2025-54948
A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.193
EPSS Ranking 95.2%
CVSS Severity
CVSS v3 Score 9.4
Proposed Action
Trend Micro Apex One Management Console (on-premise) contains an OS command injection vulnerability that could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.
Ransomware Campaign
Unknown
Products affected by CVE-2025-54948
-
cpe:2.3:a:trendmicro:apex_one:2019