A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modTMSM component could allow an attacker to manipulate certain parameters leading to information disclosure on affected installations.
Metrics
Affected Vendors & Products
References
History
Mon, 08 Sep 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Microsoft
Microsoft windows |
|
CPEs | cpe:2.3:a:trendmicro:apex_central:2019:-:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_3752:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_5158:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6016:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6288:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6394:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6481:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6511:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6571:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6658:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6660:*:*:-:*:*:* cpe:2.3:a:trendmicro:apex_central:2019:build_6890:*:*:-:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Microsoft
Microsoft windows |
Fri, 20 Jun 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 17 Jun 2025 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modTMSM component could allow an attacker to manipulate certain parameters leading to information disclosure on affected installations. | |
First Time appeared |
Trendmicro
Trendmicro apex Central |
|
Weaknesses | CWE-918 | |
CPEs | cpe:2.3:a:trendmicro:apex_central:6955:*:*:en:*:windows_10:x86_64:1809 | |
Vendors & Products |
Trendmicro
Trendmicro apex Central |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: trendmicro
Published: 2025-06-17T19:56:01.476Z
Updated: 2025-06-20T13:12:57.801Z
Reserved: 2025-03-25T17:52:24.546Z
Link: CVE-2025-30678

Updated: 2025-06-18T14:19:55.678Z

Status : Analyzed
Published: 2025-06-17T20:15:31.563
Modified: 2025-09-08T21:04:45.197
Link: CVE-2025-30678

No data.