A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modTMSM component could allow an attacker to manipulate certain parameters leading to information disclosure on affected installations.
2025-06-17T20:15:31.563
2025-09-08T21:04:45.197
Analyzed
CVSSv3.1: 6.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Application | trendmicro | apex_central | 2019 | Yes |
| Operating System | microsoft | windows | - | No |