Metrics
Affected Vendors & Products
Wed, 07 Jan 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:sohu:cachecloud:*:*:*:*:*:*:*:* |
Mon, 05 Jan 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sohu
Sohu cachecloud |
|
| Vendors & Products |
Sohu
Sohu cachecloud |
Mon, 29 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 29 Dec 2025 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in SohuTV CacheCloud up to 3.2.0. Affected is the function advancedAnalysis of the file src/main/java/com/sohu/cache/web/controller/InstanceController.java. This manipulation causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | SohuTV CacheCloud InstanceController.java advancedAnalysis cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-29T05:02:05.724Z
Updated: 2025-12-29T17:50:08.853Z
Reserved: 2025-12-28T08:19:04.715Z
Link: CVE-2025-15173
Updated: 2025-12-29T17:50:04.083Z
Status : Analyzed
Published: 2025-12-29T05:16:01.743
Modified: 2026-01-07T13:26:54.063
Link: CVE-2025-15173
No data.