CVE-2025-49220 Information

Description

An insecure deserialization operation in Trend Micro Apex Central below version 8.0.7007 could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49219 but is in a different method.

Reference

https://success.trendmicro.com/en-US/solution/KA-0019926 https://www.zerodayinitiative.com/advisories/ZDI-25-367/

CNNVD-202506-2088 (Published: 2025-06-17)

Share on: