CVE-2025-66835
Unknown
Unknown - Not Provided
DLL Hijacking in TrueConf Client 8.5.2 Enables Code Execution
Publication date: 2025-12-30
Last updated on: 2025-12-30
Assigner: MITRE
Description
Description
TrueConf Client 8.5.2 is vulnerable to DLL hijacking via crafted wfapi.dll allowing local attackers to execute arbitrary code within the user's context.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| trueconf | trueconf_client | 8.5.2 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |