vulnerability

Trend Micro Apex One: CVE-2019-9489: Improper Limitation of a Pathname to a Restricted Directory

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Apr 3, 2019
Added
Apr 29, 2025
Modified
Jul 14, 2025

Description

A directory traversal vulnerability in Trend Micro Apex One, OfficeScan (versions XG and 11.0), and Worry-Free Business Security (versions 10.0, 9.5 and 9.0) could allow an attacker to modify arbitrary files on the affected product's management console.

Solution

trend-micro-apex-one-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.