← Back

Trueconf

trueconf

Vendor: Trueconf • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Trueconf
1Trueconf
Jun 17, 2026
Mar 30, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
TrueConf Client downloads application update code and applies it without performing verification. An attacker who is able to influence the update delivery path can substitute a tampered update payload. If the payload is...Show more
TrueConf Client downloads application update code and applies it without performing verification. An attacker who is able to influence the update delivery path can substitute a tampered update payload. If the payload is executed or installed by the updater, this may result in arbitrary code execution in the context of the updating process or user.Show less
1Trueconf
1Trueconf
Jul 5, 2026
Dec 30, 2025
N/A· v4
7.1 HIGH· v3
N/A· v2
TrueConf Client 8.5.2 is vulnerable to DLL hijacking via crafted wfapi.dll allowing local attackers to execute arbitrary code within the user's context.