CVE-2025-54987 is a critical vulnerability in Trend Micro Apex One (on-premise) management console, allowing pre-authenticated remote attackers to upload malicious code and execute commands. With a CVSS score of 9.8, this flaw presents a severe risk due to its network-based attack vector, low complexity, and complete compromise of confidentiality, integrity, and availability. While no public exploit code is currently available, the vulnerability is actively being exploited in the wild, as evidenced by significant media coverage and community discussion, indicating a high probability of real-world attacks.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2019CPE matchmatch criteria | cpe:2.3:a:trendmicro:apex_one:2019:*:*:*:on-premises:windows:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.