CVE-2017-20113: TrueConf Server Stored cross site scripting
Published Jun 29, 2022
·Updated
A vulnerability, which was classified as problematic, was found in TrueConf Server 4.3.7. This affects an unknown part. The manipulation leads to basic cross site scripting (Stored). It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
1 affected component
TrueConf Server<5.0.2
Event History
Jun 29, 2022
CVE Published
via MITRE·04:15 PM
Data Sourced
via MITRE·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-20113?
The severity of CVE-2017-20113 is medium with a CVSS score of 5.4.
2
What is the affected software of CVE-2017-20113?
The affected software of CVE-2017-20113 is TrueConf Server versions up to 5.0.2.
3
What is the vulnerability type of CVE-2017-20113?
CVE-2017-20113 is a cross-site scripting (XSS) vulnerability.
4
Can CVE-2017-20113 be exploited remotely?
Yes, CVE-2017-20113 can be exploited remotely.
5
How can I fix CVE-2017-20113?
To fix CVE-2017-20113, you should update TrueConf Server to a version higher than 5.0.2.