Trend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a memory exhaustion vulnerability that may lead to denial-of-service or system freeze if exploited by an attacker using a specially crafted file.
Conclusion & alert: CVE-2021-25252 is rated Low Risk (37/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.56%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.18% | 0.56% | +0.38% |
| 2 | 2026-02-15 | 0.06% | 0.18% | +0.11% |
| 3 | 2025-03-17 | — | 0.06% | — |
Full EPSS history (8 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.5 | 3.1 | MEDIUM |
|
1.8 | 3.6 | [email protected] |
| 4.9 | 2.0 | MEDIUM |
|
3.9 | 6.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| trendmicro | apex_central | 2019 | cpe:2.3:a:trendmicro:apex_central:2019:-:*:*:*:*:*:* |
| trendmicro | apex_one | 2019 | cpe:2.3:a:trendmicro:apex_one:2019:-:*:*:*:*:*:* |
| trendmicro | cloud_edge | 5.0 | cpe:2.3:a:trendmicro:cloud_edge:5.0:*:*:*:*:*:*:* |
| trendmicro | apex_one | — | cpe:2.3:a:trendmicro:apex_one:-:-:*:*:*:*:*:* |
| trendmicro | deep_security | 10.0 | cpe:2.3:a:trendmicro:deep_security:10.0:-:*:*:*:*:*:* |
| trendmicro | deep_security | 11.0 | cpe:2.3:a:trendmicro:deep_security:11.0:-:*:*:*:*:*:* |
| trendmicro | deep_security | 12.0 | cpe:2.3:a:trendmicro:deep_security:12.0:-:*:*:*:*:*:* |
| trendmicro | deep_security | 20.0 | cpe:2.3:a:trendmicro:deep_security:20.0:-:*:*:long_term_support:*:*:* |
| trendmicro | control_manager | 7.0 | cpe:2.3:a:trendmicro:control_manager:7.0:-:*:*:*:*:*:* |
| trendmicro | deep_discovery_analyzer | 5.1 | cpe:2.3:a:trendmicro:deep_discovery_analyzer:5.1:-:*:*:*:*:*:* |
| trendmicro | deep_discovery_email_inspector | 2.5 | cpe:2.3:a:trendmicro:deep_discovery_email_inspector:2.5:-:*:*:*:*:*:* |
| trendmicro | deep_discovery_inspector | 3.8 | cpe:2.3:a:trendmicro:deep_discovery_inspector:3.8:-:*:*:*:*:*:* |
| trendmicro | interscan_messaging_security_virtual_appliance | 9.1 | cpe:2.3:a:trendmicro:interscan_messaging_security_virtual_appliance:9.1:-:*:*:*:*:*:* |
| trendmicro | interscan_web_security_virtual_appliance | 6.5 | cpe:2.3:a:trendmicro:interscan_web_security_virtual_appliance:6.5:-:*:*:*:*:*:* |
| trendmicro | officescan | — | cpe:2.3:a:trendmicro:officescan:-:*:*:*:*:*:*:* |
| trendmicro | portal_protect | 2.6 | cpe:2.3:a:trendmicro:portal_protect:2.6:*:*:*:*:*:*:* |
| trendmicro | scanmail | 14.0 | cpe:2.3:a:trendmicro:scanmail:14.0:*:*:*:*:microsoft_exchange:*:* |
| trendmicro | scanmail_for_ibm_domino | 5.8 | cpe:2.3:a:trendmicro:scanmail_for_ibm_domino:5.8:-:*:*:*:*:*:* |
| trendmicro | serverprotect_for_storage | 6.0 | cpe:2.3:a:trendmicro:serverprotect_for_storage:6.0:-:*:*:*:*:*:* |
| trendmicro | serverprotect | 5.8 | cpe:2.3:a:trendmicro:serverprotect:5.8:-:*:*:*:*:*:* |
| trendmicro | serverprotect_for_network_appliance_filers | 5.8 | cpe:2.3:a:trendmicro:serverprotect_for_network_appliance_filers:5.8:-:*:*:*:*:*:* |
| trendmicro | safe_lock | 1.1 | cpe:2.3:a:trendmicro:safe_lock:1.1:-:*:*:txone:*:*:* |
| trendmicro | worry-free_business_security | 10.1 | cpe:2.3:a:trendmicro:worry-free_business_security:10.1:-:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://success.trendmicro.com/solution/000285675 | Patch Vendor Advisory |