Medium severity6.5NVD Advisory· Published Jun 17, 2025· Updated Jun 17, 2026
CVE-2025-30678
CVE-2025-30678
Description
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modTMSM component could allow an attacker to manipulate certain parameters leading to information disclosure on affected installations.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
14cpe:2.3:a:trendmicro:apex_central:2019:-:*:*:-:*:*:*+ 12 more
- cpe:2.3:a:trendmicro:apex_central:2019:-:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_3752:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_5158:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6016:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6288:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6394:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6481:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6511:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6571:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6658:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6660:*:*:-:*:*:*
- cpe:2.3:a:trendmicro:apex_central:2019:build_6890:*:*:-:*:*:*
- (no CPE)
- Trend Micro, Inc./Trend Micro Apex Centralv5cpe:2.3:a:trendmicro:apex_central:6955:*:*:en:*:windows_10:x86_64:1809Range: 8.0
Patches
Vulnerability mechanics
References
2- success.trendmicro.com/en-US/solution/KA-0019355nvdVendor Advisory
- www.zerodayinitiative.com/advisories/ZDI-25-236/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.