Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 21 May 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Privilege Escalation via Link Following Vulnerability in Trend Micro Apex One |
Thu, 21 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 21 May 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. | |
| First Time appeared |
Trendmicro
Trendmicro apexone Op Trendmicro apexone Saas |
|
| Weaknesses | CWE-59 | |
| CPEs | cpe:2.3:a:trendmicro:apexone_op:14.0.0.14136:*:*:*:*:*:*:* cpe:2.3:a:trendmicro:apexone_saas:14.0.0.20315:*:*:*:*:*:*:* |
|
| Vendors & Products |
Trendmicro
Trendmicro apexone Op Trendmicro apexone Saas |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: trendmicro
Published:
Updated: 2026-05-21T14:09:07.478Z
Reserved: 2026-02-11T16:33:44.102Z
Link: CVE-2025-71212
Updated: 2026-05-21T14:09:03.595Z
Status : Undergoing Analysis
Published: 2026-05-21T14:16:43.777
Modified: 2026-05-21T15:05:28.023
Link: CVE-2025-71212
No data.
OpenCVE Enrichment
Updated: 2026-05-21T14:45:12Z