Loading
A vulnerability was found in TrueConf Server 4.3.7 and classified as problematic. This issue affects some unknown processing of the file /admin/conferences/list/. The manipulation of the argument sort leads to basic cross site scripting (Reflected). The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Use CWE-80, Trueconf vendor hub and Server product page to widen CVE-2017-20115 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-46764, CVE-2022-46763 and CVE-2025-66824 for nearby disclosures in the same product family.