Vulnerability Details CVE-2022-46764
A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.107
EPSS Ranking 93.0%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-46764
-
cpe:2.3:a:trueconf:server:4.3.7.12219
-
cpe:2.3:a:trueconf:server:4.3.7.12255
-
cpe:2.3:a:trueconf:server:5.2.0.10225
-
cpe:2.3:o:microsoft:windows:-