ZDI-CAN-26039: ZDI-26-148: Trend Micro Apex Central Improper Authentication Privilege Escalation Vulnerability
This vulnerability allows remote attackers to escalate privileges on affected installations of Trend Micro Apex Central. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.1. The following CVEs are assigned: CVE-2025-71209.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-26039?
The severity of ZDI-CAN-26039 is high due to its potential for privilege escalation.
How do I fix ZDI-CAN-26039?
To fix ZDI-CAN-26039, ensure that your Trend Micro Apex Central installations are updated to the latest version that addresses this vulnerability.
What types of installations are affected by ZDI-CAN-26039?
ZDI-CAN-26039 affects affected installations of Trend Micro Apex Central where proper authentication is required to exploit the vulnerability.
Can ZDI-CAN-26039 be exploited remotely?
Yes, ZDI-CAN-26039 can be exploited remotely but requires prior authentication to do so.
What is the nature of the vulnerability in ZDI-CAN-26039?
ZDI-CAN-26039 is an improper authentication vulnerability, allowing privilege escalation on affected systems.