Vulnerability Details CVE-2022-46764
A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.145
EPSS Ranking 94.1%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-46764
-
cpe:2.3:a:trueconf:server:4.3.7.12219
-
cpe:2.3:a:trueconf:server:4.3.7.12255
-
cpe:2.3:a:trueconf:server:5.2.0.10225
-
cpe:2.3:o:microsoft:windows:-