VendorsTrueConfserverall versions
Vulnerabilities

TrueConf Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2022-46764
A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution.
Published 2022-12-27 · Modified
9.8EPSS 0.021
CVE-2022-46763
A SQL injection issue in a database stored function in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows a low-privileged database user to execute arbitrary SQL commands as the database administrator, resulting in execution of arbitrary code.
Published 2022-12-27 · Modified
8.8EPSS 0.010
CVE-2017-20119
TrueConf Server change-lang redirect
Published 2022-06-29 · Modified
6.1EPSS 0.007
CVE-2017-20113
TrueConf Server Stored cross site scripting
Published 2022-06-29 · Modified
5.4EPSS 0.006
CVE-2017-20114
TrueConf Server Reflected cross site scripting
Published 2022-06-29 · Modified
5.4EPSS 0.006
CVE-2017-20115
TrueConf Server Reflected cross site scripting
Published 2022-06-29 · Modified
5.4EPSS 0.006
CVE-2017-20116
TrueConf Server Reflected cross site scripting
Published 2022-06-29 · Modified
5.4EPSS 0.006
CVE-2017-20117
TrueConf Server group DOM cross site scripting
Published 2022-06-29 · Modified
5.4EPSS 0.006
CVE-2017-20118
TrueConf Server DOM cross site scripting
Published 2022-06-29 · Modified
5.4EPSS 0.006