CVE-2026-45208: High severity Trend Micro Apex One vulnerability
A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations.
Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-45208?
CVE-2026-45208 has a severity rating of 7.8, classified as high.
How do I fix CVE-2026-45208?
To mitigate CVE-2026-45208, ensure that you apply the latest security updates provided by Trend Micro for Apex One and Symantec for the SEP agent.
What systems are affected by CVE-2026-45208?
CVE-2026-45208 affects the Trend Micro Apex One and Symantec Endpoint Protection agent installations.
What type of vulnerability is CVE-2026-45208?
CVE-2026-45208 is a time-of-check time-of-use vulnerability that can lead to privilege escalation.
What is required for an attacker to exploit CVE-2026-45208?
An attacker must first gain the ability to execute low-privileged code on the target system to exploit CVE-2026-45208.