Skip to main content

Vendor/product archive

trueconf / server CVEs

Beta · best-effort

13 CVEs tagged to trueconf / server1 Critical, 3 High, 2 Medium, 7 Low, 0 Unrated.

CVE-2025-66823

Published Dec 30, 2025

An HTML Injection vulnerability in TrueConf server 5.5.2.10813 in the conference description field allows an attacker to inject arbitrary HTML in the Create/Edit conference functi…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66834

Published Dec 30, 2025

A CSV Formula Injection vulnerability in TrueConf Server v5.5.2.10813 allows a normal user to inject malicious spreadsheet formulas into exported chat logs via crafted Display Nam…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66824

Published Dec 30, 2025

A Stored Cross-Site Scripting (XSS) vulnerability exists in the Meeting location field of the Create/Edit Conference functionality in TrueConf Server v5.5.2.10813. The injected pa…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2022-46764

Published Dec 27, 2022

A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately le…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-46763

Published Dec 27, 2022

A SQL injection issue in a database stored function in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows a low-privileged database user to execute arbitrary SQL commands a…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-20120

Published Jun 29, 2022

A vulnerability classified as problematic was found in TrueConf Server 4.3.7. This vulnerability affects unknown code of the file /admin/service/stop/. The manipulation leads to c…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20119

Published Jun 29, 2022

A vulnerability classified as problematic has been found in TrueConf Server 4.3.7. This affects an unknown part of the file /admin/general/change-lang. The manipulation of the arg…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-20118

Published Jun 29, 2022

A vulnerability was found in TrueConf Server 4.3.7. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /admin/conferences/list/. Th…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-20117

Published Jun 29, 2022

A vulnerability was found in TrueConf Server 4.3.7. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/group. The m…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-20116

Published Jun 29, 2022

A vulnerability was found in TrueConf Server 4.3.7. It has been classified as problematic. Affected is an unknown function of the file /admin/group/list/. The manipulation of the…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-20115

Published Jun 29, 2022

A vulnerability was found in TrueConf Server 4.3.7 and classified as problematic. This issue affects some unknown processing of the file /admin/conferences/list/. The manipulation…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-20114

Published Jun 29, 2022

A vulnerability has been found in TrueConf Server 4.3.7 and classified as problematic. This vulnerability affects unknown code of the file /admin/conferences/get-all-status/. The…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-20113

Published Jun 29, 2022

A vulnerability, which was classified as problematic, was found in TrueConf Server 4.3.7. This affects an unknown part. The manipulation leads to basic cross site scripting (Store…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort
Showing 1-13 of 13 CVEsPage 1 of 1