Show filters
63 Total Results
Displaying 61-63 of 63
Sort by:
Attacker Value
Unknown

CVE-2012-6644

Disclosure Date: April 08, 2014 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3) groups.php, or (4) videos.php; (5) query parameter to search_result.php; or (6) type parameter to view_collection.php or (7) view_item.php.
0
Attacker Value
Unknown

CVE-2014-0647

Disclosure Date: January 28, 2014 (last updated October 05, 2023)
The Starbucks 2.6.1 application for iOS stores sensitive information in plaintext in the Crashlytics log file (/Library/Caches/com.crashlytics.data/com.starbucks.mystarbucks/session.clslog), which allows attackers to discover usernames, passwords, and e-mail addresses via an application that reads session.clslog.
0
Attacker Value
Unknown

CVE-2011-3717

Disclosure Date: September 23, 2011 (last updated October 04, 2023)
ClipBucket 2.0.9 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by plugins/signup_captcha/signup_captcha.php and certain other files.
0