Trend Micro Product Security Update Advisory (CVE-2025-54948)

Trend Micro Product Security Update Advisory (CVE-2025-54948)

Overview

 

Trend Micro has released security updates to fix vulnerabilities in our products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-54948

 

Trend Micro Apex One (on-premise) Versions: 2019 Management Server Version 14039 and earlier

 

 

Resolved Vulnerabilities

 

Command Injection Vulnerability in Trend Micro Apex One (on-premise) (CVE-2025-54948)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-54948

 

Trend Micro Apex One (on-prem) version: FixTool_Aug2025 temporary patch

 

 

References

 

[1] ITW CRITICAL SECURITY BULLETIN: Trend Micro Apex One™ (On-Premise) Management Console Command Injection RCE Vulnerabilities

https://success.trendmicro.com/en-US/solution/KA-0020652