[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-72530":6},{"stargazers_count":4,"fetched_at":5},7,"2026-08-20T15:42:44.608Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":62,"aliases":63,"duplicate_of":9,"upstream":64,"downstream":65,"duplicates":66,"related":67,"reserved_at":9,"published_at":68,"modified_at":69,"state":70,"summary":71,"references_raw":82,"kevs":99,"epss":110,"epss_history":112,"metrics":114,"affected":126},"CVE-2026-72530","A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-94","Improper Control of Generation of Code ('Code Injection')","The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.","weakness","Draft","Base","Medium",[20,24,58],{"id":21,"name":22,"techniques":23},"CAPEC-242","Code Injection",[],{"id":25,"name":26,"techniques":27},"CAPEC-35","Leverage Executable Code in Non-Executable Files",[28,39,46],{"id":29,"name":30,"tactics":31,"countermeasures":38},"T1027.006","HTML Smuggling",[32,35],{"id":33,"name":34},"TA0030","Defense Evasion",{"id":36,"name":37},"TA0005","Stealth",[],{"id":40,"name":41,"tactics":42,"countermeasures":45},"T1027.009","Embedded Payloads",[43,44],{"id":33,"name":34},{"id":36,"name":37},[],{"id":47,"name":48,"tactics":49,"countermeasures":52},"T1564.009","Resource Forking",[50,51],{"id":33,"name":34},{"id":36,"name":37},[53],{"id":54,"name":55,"tactic":56},"D3-FFV","File Format Verification",{"name":57},"Isolate",{"id":59,"name":60,"techniques":61},"CAPEC-77","Manipulating User-Controlled Variables",[],[],[],[],[],[],[],"2026-08-19T16:56:53.099Z","2026-08-20T17:48:23.985Z","Undergoing Analysis",{"cisa_kev":72,"cisa_ransomware":73,"cisa_vendor":74,"epss_severity":75,"epss_score":76,"severity":77,"severity_score":78,"severity_version":79,"severity_source":80,"severity_vector":81,"severity_status":70},true,false,"TrueConf","low",0.0034,"critical",9.5,"v4.0","cve.org","CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H",[83,89,94],{"url":84,"sources":85,"tags":87},"https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/",[80,86],"nvd",[88],"Third Party Advisory",{"url":90,"sources":91,"tags":92},"https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/",[80,86],[93],"Related",{"url":95,"sources":96,"tags":97},"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72530",[80,86],[98],"Government Resource",[100],{"source":101,"vendor":74,"product":102,"date_added":103,"vulnerability_name":104,"short_description":105,"required_action":106,"due_date":107,"known_ransomware_campaign_use":108,"notes":109,"exploitation_type":9},"cisa","Server","2026-08-20","TrueConf Server Code Injection Vulnerability","TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.","Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.","2026-09-03","Unknown","https://trueconf.com/blog/news/security-fixes-updates-and-advisories ; https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-72530",{"date":103,"score":76,"percentile":111},0.27168,[113],{"date":103,"score":76,"percentile":111},[115,118],{"source":80,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":9,"cvss_v4_0":116},{"baseScore":78,"baseSeverity":117,"vectorString":81,"impactScore":9,"exploitabilityScore":9},"CRITICAL",{"source":86,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":119,"cvss_v4_0":124},{"baseScore":120,"baseSeverity":117,"vectorString":121,"impactScore":122,"exploitabilityScore":123},9,"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",10,5.6,{"baseScore":78,"baseSeverity":117,"vectorString":125,"impactScore":9,"exploitabilityScore":9},"CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X",[127],{"ecosystem":9,"name":128,"vendor":129,"product":130,"cpe_part":131,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":132},"trueconf server","trueconf","trueconf_server","a",[133,137,141,145],{"version":134,"is_range":72,"range_type":80,"version_start":9,"version_start_type":9,"version_end":135,"version_end_type":136,"fixed_in":9},"\u003C 5.3","5.3","excluding",{"version":138,"is_range":72,"range_type":80,"version_start":135,"version_start_type":139,"version_end":140,"version_end_type":136,"fixed_in":9},">= 5.3, \u003C 5.3.9","including","5.3.9",{"version":142,"is_range":72,"range_type":80,"version_start":143,"version_start_type":139,"version_end":144,"version_end_type":136,"fixed_in":9},">= 5.4, \u003C 5.4.9","5.4","5.4.9",{"version":146,"is_range":72,"range_type":80,"version_start":147,"version_start_type":139,"version_end":148,"version_end_type":136,"fixed_in":9},">= 5.5, \u003C 5.5.5","5.5","5.5.5"]