Loading
A vulnerability has been found in TrueConf Server 4.3.7 and classified as problematic. This vulnerability affects unknown code of the file /admin/conferences/get-all-status/. The manipulation of the argument keys[] leads to basic cross site scripting (Reflected). The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Use CWE-80, Trueconf vendor hub and Server product page to widen CVE-2017-20114 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-46764, CVE-2022-46763 and CVE-2025-66824 for nearby disclosures in the same product family.