PT-2025-14537 · Trend Micro · Trend Vision One

Vaibhav Kumar Srivastava

·

Published

2025-04-02

·

Updated

2025-04-02

·

CVE-2025-31286

CVSS v3.1

9.0

Critical

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Trend Vision One (affected versions not specified)
Description An HTML injection issue was previously discovered, potentially allowing a malicious user to execute arbitrary code. This issue has already been addressed on the backend service and is no longer considered an active vulnerability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-31286

Affected Products

Trend Vision One