Home/Product/trueconf server
Product

trueconf server

15 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-3502
< 8.5.3.884
TrueConf Client downloads application update code and applies it without performing verification. An attacker who is able to influ
7.8HIGH
CVE-2025-66823
all versions
An HTML Injection vulnerability in TrueConf server 5.5.2.10813 in the conference description field allows an attacker to inject ar
5.4MEDIUM
CVE-2025-66835
all versions
TrueConf Client 8.5.2 is vulnerable to DLL hijacking via crafted wfapi.dll allowing local attackers to execute arbitrary code with
7.1HIGH
CVE-2025-66834
all versions
A CSV Formula Injection vulnerability in TrueConf Server v5.5.2.10813 allows a normal user to inject malicious spreadsheet formula
7.3HIGH
CVE-2025-66824
all versions
A Stored Cross-Site Scripting (XSS) vulnerability exists in the Meeting location field of the Create/Edit Conference functionality
8.7HIGH
CVE-2022-46764
< 5.2.6
A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated attackers
9.8CRITICAL
CVE-2022-46763
< 5.2.6
A SQL injection issue in a database stored function in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows a low-privileged
8.8HIGH
CVE-2017-20120
all versions
A vulnerability classified as problematic was found in TrueConf Server 4.3.7. This vulnerability affects unknown code of the file
4.3MEDIUM
CVE-2017-20119
< 5.0.2
A vulnerability classified as problematic has been found in TrueConf Server 4.3.7. This affects an unknown part of the file /admin
3.5LOW
CVE-2017-20118
< 5.0.2
A vulnerability was found in TrueConf Server 4.3.7. It has been rated as problematic. Affected by this issue is some unknown funct
3.5LOW
CVE-2017-20117
< 5.0.2
A vulnerability was found in TrueConf Server 4.3.7. It has been declared as problematic. Affected by this vulnerability is an unkn
3.5LOW
CVE-2017-20116
< 5.0.2
A vulnerability was found in TrueConf Server 4.3.7. It has been classified as problematic. Affected is an unknown function of the
3.5LOW
CVE-2017-20115
< 5.0.2
A vulnerability was found in TrueConf Server 4.3.7 and classified as problematic. This issue affects some unknown processing of th
3.5LOW
CVE-2017-20114
< 5.0.2
A vulnerability has been found in TrueConf Server 4.3.7 and classified as problematic. This vulnerability affects unknown code of
3.5LOW
CVE-2017-20113
< 5.0.2
A vulnerability, which was classified as problematic, was found in TrueConf Server 4.3.7. This affects an unknown part. The manipu
3.5LOW
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin