CVE-2023-47453

HIGH

Sohu Video Player - Uncontrolled Search Path

Title source: rule

Description

An Untrusted search path vulnerability in Sohu Video Player 7.0.15.0 allows local users to gain escalated privileges through the version.dll file in the current working directory.

Scores

CVSS v3 7.8
EPSS 0.0007
EPSS Percentile 21.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

sohu/video_player

Timeline

Published Nov 30, 2023
Tracked Since Feb 18, 2026