CVE-2025-49216: Trend Micro Endpoint Encryption DbAppDomain Authentication Bypass Vulnerability
An authentication bypass vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to access key methods as an admin user and modify product configurations on affected installations.
Other sources
This vulnerability allows remote attackers to bypass authentication on affected installations of Trend Micro Endpoint Encryption. Authentication is not required to exploit this vulnerability. The specific flaw exists within the DbAppDomain service. The issue results from an improper implementation of an authentication algorithm. An attacker can leverage this vulnerability to bypass authentication on the system.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-49216?
CVE-2025-49216 is considered a high severity vulnerability, as it allows attackers to bypass authentication and modify configurations.
How do I fix CVE-2025-49216?
To fix CVE-2025-49216, update Trend Micro Endpoint Encryption to the latest version that addresses this authentication bypass vulnerability.
Which versions of Trend Micro Endpoint Encryption are affected by CVE-2025-49216?
CVE-2025-49216 affects specific versions of Trend Micro Endpoint Encryption, and users should consult the vendor's advisory for exact details.
Can CVE-2025-49216 be exploited remotely?
Yes, CVE-2025-49216 can be exploited remotely by attackers targeting vulnerable installations.
What could an attacker gain access to by exploiting CVE-2025-49216?
Exploiting CVE-2025-49216 could allow an attacker to access critical methods as an admin user and modify important product configurations.