Trend Micro Apex Central
cpe:2.3:a:trendmicro:apex_central:*:*:*:*:windows:*:*
- < 2019 build 6955
A Server-side Request Forgery (SSRF) vulnerability has been identified in the modOSCE component of Trend Micro Apex Central (on-premise) versions prior to build 6955. This vulnerability allows attackers to manipulate certain parameters, potentially leading to unauthorized information disclosure on affected installations.
Exploitation of this vulnerability could result in the unauthorized disclosure of sensitive information from the affected Apex Central installation.
Users of Trend Micro Apex Central (on-premise) should update to build 6955. For those using Apex Central (SaaS), the March 2025 Monthly Maintenance Release addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.