CVE-2025-54948
Last modified
CVE-2025-54948 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.. CISA has confirmed active exploitation in the wild. EPSS estimates a 20.25% chance of exploitation in the next 30 days.
Description
A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.
Metrics
Exploitation Status
This vulnerability is listed in CISA’s Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. Federal agencies must remediate by .
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Trendmicro | Apex One | 2019 |
References
- https://success.trendmicro.com/en-US/solution/KA-0020652Patch, Vendor Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-54948US Government Resource
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-54948?
How severe is CVE-2025-54948?
How do I fix CVE-2025-54948?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-54942A missing authentication for critical function vulnerability…9.8
- CVE-2025-54943A missing authorization vulnerability in SUNNET Corporate Tr…9.8
- CVE-2025-54944An unrestricted upload of file with dangerous type vulnerabi…9.8
- CVE-2025-54945An external control of file name or path vulnerability in SU…9.8
- CVE-2025-54946A SQL injection vulnerability in SUNNET Corporate Training M…9.8
- CVE-2025-54947In Apache StreamPark versions 2.0.0 through 2.1.7, a securit…9.8
- CVE-2025-54949A heap buffer overflow vulnerability in the loading of Execu…9.8
- CVE-2025-5495A vulnerability was found in Netgear WNR614 1.1.0.28_1.0.1WW…9.8
- CVE-2025-54950An out-of-bounds access vulnerability in the loading of Exec…9.8
- CVE-2025-54951A group of related buffer overflow vulnerabilities in the lo…9.8
- CVE-2025-54952An integer overflow vulnerability in the loading of ExecuTor…9.8
- CVE-2025-54955OpenNebula Community Edition (CE) before 7.0.0 and Enterpris…8.1
Are you affected by CVE-2025-54948?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
