CVE-2023-25143: Critical severity trend micro apex one vulnerability
An uncontrolled search path element vulnerability in the Trend Micro Apex One Server installer could allow an attacker to achieve a remote code execution state on affected products.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25143?
CVE-2023-25143 is an uncontrolled search path element vulnerability in the Trend Micro Apex One Server installer that could allow an attacker to achieve remote code execution.
How severe is CVE-2023-25143?
CVE-2023-25143 has a severity rating of 9.8 (Critical).
What software is affected by CVE-2023-25143?
The Trend Micro Apex One Server installer versions up to 14.0.11960 and the 2019 version of Trend Micro Apex One and Worry-Free Business Security are affected by CVE-2023-25143.
How can an attacker exploit CVE-2023-25143?
An attacker can exploit CVE-2023-25143 by exploiting the uncontrolled search path element vulnerability in the Trend Micro Apex One Server installer.
Is Microsoft Windows vulnerable to CVE-2023-25143?
No, Microsoft Windows is not vulnerable to CVE-2023-25143.
How can I fix CVE-2023-25143?
To fix CVE-2023-25143, update the Trend Micro Apex One Server installer to a version that is not affected.