Vulnerabilities (CVE)

Filtered by vendor Oxygenz Subscribe
Filtered by product Clipbucket V5
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-55911 1 Oxygenz 1 Clipbucket V5 2025-09-25 N/A 6.5 MEDIUM
An issue Clip Bucket v.5.5.2 Build#90 allows a remote attacker to execute arbitrary codes via the file_downloader.php and the file parameter
CVE-2025-55912 1 Oxygenz 1 Clipbucket V5 2025-09-25 N/A 7.3 HIGH
An issue in ClipBucket 5.5.0 and prior versions allows an unauthenticated attacker can exploit the plupload endpoint in photo_uploader.php to upload arbitrary files without any authentication, due to missing access controls in the upload handler