#VU121041 Exposed dangerous method or function in Apex Central - CVE-2025-69258
Published: January 7, 2026 / Updated: January 7, 2026
Apex Central
Trend Micro
Description
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to exposure of the LoadLibraryEX feature in MsgReceiver.exe that listens on port 20001/TCP. A remote non-authenticated attacker can send message 0x0a8d to load an attacker-controlled DLL into MsgReceiver.exe, leading to execution of attacker-supplied code under the security context of SYSTEM.