CVE-2023-38624
Published: Jan 23, 2024
Modified: Jun 20, 2025
Description
A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build 6481) could allow an attacker to interact with internal or local services directly. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. This is a similar, but not identical vulnerability as CVE-2023-38625 through CVE-2023-38627.
| Vendor | Product | Versions |
|---|---|---|
Trend Micro, Inc. | Trend Micro Apex Central | affected 2019 - < 8.0.0.6481 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now