Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
CVE-2023-41179
Trend Micro Apex One and Worry-Free Business Security
AV AC PR UI S C I A CVSS EPSS %ile KEV
N L H N U H H H 7.2 .0425 90.8 YES
AFFECTED
Product Versions Fixed
Trend Micro Apex One 2019 (14.0) – —
Trend Micro Apex One SaaS – —
Trend Micro Worry-Free Business Security 10.0 SP1 – —
Trend Micro Worry-Free Business Security Services SaaS – —
TIMELINE
Aug 24 Reserved by trendmicro
Sep 19 Published (CNA: trendmicro)
Sep 21 Added to CISA KEV, remediation due 2023-10-12
Description
A vulnerability in the 3rd party AV uninstaller module contained in Trend Micro Apex One (on-prem and SaaS), Worry-Free Business Security and Worry-Free Business Security Services could allow an attacker to manipulate the module to execute arbitrary commands on an affected installation.
Note that an attacker must first obtain administrative console access on the target system in order to exploit this vulnerability.
Lifecycle
Complete event history — 3 events, chronological
| Date | Event | Detail |
| August 24, 2023 | Reserved | Reserved by trendmicro |
| September 19, 2023 | Published | Published (CNA: trendmicro) |
| September 21, 2023 | KEV ADDED | Added to CISA KEV, remediation due 2023-10-12 |
About this page
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2023-41179 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Sunday, October 4, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.