CVE Feed

    Dashboard / CVE / CVE-2025-55971

    CVE-2025-55971

    TCL 65C655 Smart TV, running firmware version V8-R75PT01-LF1V269.001116 (Android TV, Kernel 5.4.242+), is vulnerable to a blind, unauthenticated Server-Side Request Forgery (SSRF) vulnerability via the UPnP MediaRenderer service (AVTransport:1). The device accepts unauthenticated SetAVTransportURI SOAP requests over TCP/16398 and attempts to retrieve externally referenced URIs, including attacker-controlled payloads. The blind SSRF allows for sending requests on behalf of the TV, which can be leveraged to probe for other internal or external services accessible by the device (e.g., 127.0.0.1:16XXX, LAN services, or internet targets), potentially enabling additional exploit chains.

    Published:Oct 3, 2025
    Last Modified:Oct 15, 2025
    EPS:Oct 3, 2025
    EPSS Score:0.00034
    CVSS Score:4.7

    Affected Products

    Vendor
    Google
    Product
    Android Tv
    Vendor
    Tcl
    Product
    65c655
    Vendor
    Tcl
    Product
    65c655 Firmware
    Vendor
    Tcl
    Product
    Tcl

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High