🔥 この記事の詳細
2026-09-22 更新
B
今週中

Trend Microは、Apex Oneにおける8つの脆弱性を修正するアップデートをリリースしました

脆弱性🌐 英語ソース
🖥️ 製品Trend Micro
🔢 CVECVE-2025-71217CVE-2025-71216CVE-2025-71215+1件
📅 2026-09-22📰 csirt_it
📌 一言でいうと
Trend Microは、Apex Oneにおける8つの脆弱性を修正するアップデートをリリースしました。このうち2件が「緊急」、6件が「重要」な深刻度であり、悪用された場合はリモートでのコード実行や権限昇格を許す可能性があります。影響を受ける製品にはApex One 2019 (On-prem) および Apex One as a Serviceなどが含まれます。
🔍該当判定
  • 自社サーバーで『Trend Micro Apex One 2019』を運用しており、バージョンが CP Build 14136 より古い
  • クラウド版の『Apex One as a Service』を利用している
  • 『Trend Vision One Endpoint - Standard Endpoint Protection』を利用しており、エージェントのバージョンが 14.0.20315 より古い
上記いずれにも該当しない → 静観でOK
✅該当時の対応
ベンダーが提供する最新のセキュリティアップデートを適用してください。特にApex One 2019 (On-prem) は CP Build 14136 以降、Security Agent は Build 14.0.20315 以降への更新が推奨されます。
📧 メール案を見る (管理者向け)
⚠️ これは AI が生成した参考例です。配信前に必ず内容をご確認のうえ、貴社の状況に合わせて編集してご利用ください。実際の被害状況や自社の利用環境を踏まえた判断は、貴社のセキュリティ責任者にご確認ください。
件名: 【共有】Trend Micro Apex One 脆弱性対応について

お疲れさまです。Trend Micro Apex Oneの脆弱性に関する情報共有です。

■ 概要
Apex Oneにおいて、リモートコード実行 (RCE) および権限昇格につながる8つの脆弱性が報告されました。深刻度は「緊急 (Critical)」2件、「重要 (High)」6件となっており、迅速な対応が推奨されます。

■ 影響範囲
- Apex One 2019 (On-prem): CP Build 14136 未満
- Apex One as a Service / Trend Vision One Endpoint - Standard Endpoint Protection: Security Agent Build 14.0.20315 未満

■ 対応手順
1. 利用中のApex Oneのバージョンおよびビルド番号を確認してください。
2. ベンダーのセキュリティアドバイザリに従い、最新のパッチまたはアップデートを適用してください。

■ 参考情報
- Trend Micro 公式セキュリティアドバイザリ

対応優先度: 高
対応期限: 速やかに
Subject: [Security Advisory] Trend Micro Apex One Vulnerability Remediation

Dear IT/Security Team,

This is a notification regarding security vulnerabilities identified in Trend Micro Apex One.

■ Overview
Eight vulnerabilities have been discovered in Apex One, including two critical and six high-severity flaws. These vulnerabilities could potentially lead to Remote Code Execution (RCE) and Privilege Escalation.

■ Affected Scope
- Apex One 2019 (On-prem): Versions prior to CP Build 14136
- Apex One as a Service / Trend Vision One Endpoint - Standard Endpoint Protection: Security Agent versions prior to Build 14.0.20315

■ Remediation Steps
1. Verify the current build version of your Apex One installation.
2. Apply the latest security updates as specified in the vendor's security bulletin.

■ Reference
- Trend Micro Official Security Advisory

Priority: High
Deadline: Immediate