A LoadLibraryEX vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to load an attacker-controlled DLL into a key executable, leading to execution of attacker-supplied code under the context of SYSTEM on affected installations.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 08 Jan 2026 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 08 Jan 2026 13:00:00 +0000

Type Values Removed Values Added
Description A LoadLibraryEX vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to load an attacker-controlled DLL into a key executable, leading to execution of attacker-supplied code under the context of SYSTEM on affected installations.
First Time appeared Trendmicro
Trendmicro apexcentral
Weaknesses CWE-120
CWE-290
CWE-346
CPEs cpe:2.3:a:trendmicro:apexcentral:2019:7190:-:*:-:windows:*:*
Vendors & Products Trendmicro
Trendmicro apexcentral
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published:

Updated: 2026-01-09T04:55:19.118Z

Reserved: 2025-12-30T16:24:23.580Z

Link: CVE-2025-69258

cve-icon Vulnrichment

Updated: 2026-01-08T14:19:38.803Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-01-08T13:15:42.870

Modified: 2026-01-08T18:08:18.457

Link: CVE-2025-69258

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses