RSS   Vulnerabilities for 'Server'   RSS

2022-06-29
 
CVE-2017-20119

CWE-601
 

 
A vulnerability classified as problematic has been found in TrueConf Server 4.3.7. This affects an unknown part of the file /admin/general/change-lang. The manipulation of the argument redirect_url leads to open redirect. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

 
 
CVE-2017-20120

CWE-352
 

 
A vulnerability classified as problematic was found in TrueConf Server 4.3.7. This vulnerability affects unknown code of the file /admin/service/stop/. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

 


Copyright 2024, cxsecurity.com

 

Back to Top