Status: UPDATED | Advisory ID: CVE-2025-71217
| CVE | CVE-2025-71217 |
| CVSS Score / Version | 7.8 (High) / CVSS v3.1 |
| Updated | 2026-07-23 |
| CVSS Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| CVSS Prose | attack vector is local; attack complexity is low; privileges required is low; user interaction is none; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | trendmicro apex_one |
| Classified as | CWE-346 (Origin Validation Error) |
| Vendor | Product | Affected Versions | Patch Status |
|---|---|---|---|
| trendmicro | apex_one |
| Subsystems | General OT |
| Sectors | Multiple |
An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mechanism could allow a local attacker to escalate privileges on affected installations.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
The following information is provided as informational only for CVE references, as these were addressed already via ActiveUpdate/SaaS updates in mid to late 2025 (SaaS 2507 & 2005 Yearly Release). (NVD)
Monitor trendmicro's web page for any future patch releases. See vendor advisory link below.
| Source | Reference |
|---|---|
| NVD | https://nvd.nist.gov/vuln/detail/CVE-2025-71217 |
| CVE | https://www.cve.org/CVERecord?id=CVE-2025-71217 |
| Vendor advisory | https://success.trendmicro.com/en-US/solution/KA-0022458 |