CVE-2025-69260

Published Jan 8, 2026

Last updated 5 days ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2025-69260 is identified as a message out-of-bounds read vulnerability affecting Trend Micro Apex Central. This flaw allows a remote attacker to trigger a denial-of-service (DoS) condition on affected installations. Exploitation of this vulnerability does not require authentication. The vulnerability has low attack complexity and does not require any specific privileges for an attacker to exploit it. Its primary impact is on the availability of the system, as it can disrupt operations and potentially cause a complete denial of service.

Description
A message out-of-bounds read vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affected installations. Please note: authentication is not required in order to exploit this vulnerability.
Source
security@trendmicro.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
7.5
Impact score
3.6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity
HIGH

Weaknesses

security@trendmicro.com
CWE-120

Social media

Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.

Hype score

6