CVE-2012-6644

Clip-bucket Clipbucket - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3) groups.php, or (4) videos.php; (5) query parameter to search_result.php; or (6) type parameter to view_collection.php or (7) view_item.php.

Exploits (8)

exploitdb WORKING POC
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/18341
exploitdb WORKING POC VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36526
exploitdb WORKING POC VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36524
exploitdb WORKING POC VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36527
exploitdb WORKING POC VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36528
exploitdb WORKING POC VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36525
exploitdb WRITEUP VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36529
exploitdb WRITEUP VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36530

Scores

EPSS 0.0523
EPSS Percentile 89.9%

Details

CWE
CWE-79
Status published
Products (2)
clip-bucket/clipbucket
n/a/n/a
Published Apr 08, 2014
Tracked Since Feb 18, 2026