A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 22 Jan 2026 00:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution. | A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution. |
Sat, 12 Apr 2025 02:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-01-21T15:27:46.766Z
Reserved: 2022-12-07T00:00:00.000Z
Link: CVE-2022-46764
Updated: 2024-08-03T14:39:38.983Z
Status : Modified
Published: 2022-12-27T01:15:11.047
Modified: 2026-01-21T16:16:05.213
Link: CVE-2022-46764
No data.
OpenCVE Enrichment
No data.
Weaknesses