Trend Micro Security
  Rule Update

25-049 (2025年12月2日)


  概要

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

CyberPanel
1012377* - CyberPanel Command Injection Vulnerability (CVE-2024-51568)


Ivanti Endpoint Manager
1012346* - Ivanti Endpoint Manager Multiple SQL Injection Vulnerabilities - 3


NodeBB
1012378* - NodeBB Stored Cross-Site Scripting Vulnerability (CVE-2025-29513)


Solr Service
1012493 - Apache Solr Information Disclosure Vulnerability (CVE-2023-50291)


Web Server HTTPS
1012372* - Trend Micro Apex Central Local File Inclusion Vulnerability (CVE-2025-47867)
1012490 - WordPress 'Post SMTP' Plugin Authentication Bypass Vulnerability (CVE-2025-11833)


Windows SMB Server
1012394* - Microsoft Windows NEGOEX Remote Code Execution Vulnerability (CVE-2025-47981)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.