Trend Micro Security
  Rule Update

26-023 (2026年5月26日)


  概要

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Apex Central MsgReceiver
1012525* - Apex Central Remote Code Execution Vulnerability (CVE-2025-69258)


OfficeScan
1012561 - Apex One Management Console Multiple Directory Traversal Vulnerabilities (CVE-2025-71210 & CVE-2025-71211)
1012568 - TrendAI Apex One Server Directory Traversal Vulnerability


Owntone-Server
1012570 - Owntone-Server Recursive Buffer Overflow Vulnerability (CVE-2025-44560)


WSO2
1012549* - WSO2 Multiple Products Arbitrary File Upload Vulnerability (CVE-2025-3125)


Web Server Common
1012560 - Zhiyuan OA platform Arbitrary File Upload Vulnerability (CVE-2025-34040)


Web Server HTTPS
1011773* - Apex Central SQL Injection Vulnerability (CVE-2023-32529)
1012546* - BeyondTrust Remote Support Command Injection Vulnerability (CVE-2026-1731)
1012567 - Nginx Buffer Overflow Vulnerability (CVE-2026-42945)


cPanel
1012556* - cPanel WHM Authentication Bypass Vulnerability (CVE-2026-41940)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.