CVE-2025-47866

Severity
7.5HIGH
EPSS
0.3%
top 45.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 17

Description

An unrestricted file upload vulnerability in a Trend Micro Apex Central widget below version 8.0.6955 could allow an attacker to upload arbitrary files on affected installations.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
CVE-2025-47866: An unrestricted file upload vulnerability in a Trend Micro Apex Central widget below version 82025-06-17
GHSA
GHSA-7r2w-r4fg-r27h: An unrestricted file upload vulnerability in a Trend Micro Apex Central widget below version 82025-06-17
CVE-2025-47866 (HIGH CVSS 7.5) | An unrestricted file upload vulnera | cvebase.io