Vulnerabilities
Vulnerable Software
Clip-Bucket:  >> Clipbucket  Security Vulnerabilities
Multiple SQL injection vulnerabilities in the update_counter function in includes/functions.php in ClipBucket 2.6 allow remote attackers to execute arbitrary SQL commands via the time parameter to (1) videos.php or (2) channels.php. NOTE: some of these details are obtained from third party information.
CVSS Score
7.5
EPSS Score
0.081
Published
2014-04-08
Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3) groups.php, or (4) videos.php; (5) query parameter to search_result.php; or (6) type parameter to view_collection.php or (7) view_item.php.
CVSS Score
4.3
EPSS Score
0.029
Published
2014-04-08
ClipBucket 2.0.9 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by plugins/signup_captcha/signup_captcha.php and certain other files.
CVSS Score
5.0
EPSS Score
0.003
Published
2011-09-23


Contact Us

Shodan ® - All rights reserved