CVE Database
/

CVE-2023-38624

Back to search

CVE-2023-38624

Published: Jan 23, 2024

Modified: Jun 20, 2025

PUBLISHED

Description

A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build 6481) could allow an attacker to interact with internal or local services directly. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. This is a similar, but not identical vulnerability as CVE-2023-38625 through CVE-2023-38627.

VendorProductVersions

Trend Micro, Inc.

Trend Micro Apex Central

affected
2019 - < 8.0.0.6481

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now