CVE-2012-6644
Clip-bucket Clipbucket - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3) groups.php, or (4) videos.php; (5) query parameter to search_result.php; or (6) type parameter to view_collection.php or (7) view_item.php.
Exploits (8)
exploitdb
WORKING POC
VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36526
exploitdb
WORKING POC
VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36524
exploitdb
WORKING POC
VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36527
exploitdb
WORKING POC
VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36528
exploitdb
WORKING POC
VERIFIED
by YaDoY666 · textwebappsphp
https://www.exploit-db.com/exploits/36525
References (13)
Scores
EPSS
0.0523
EPSS Percentile
89.9%
Details
CWE
CWE-79
Status
published
Products (2)
clip-bucket/clipbucket
n/a/n/a
Published
Apr 08, 2014
Tracked Since
Feb 18, 2026