CVE-2008-0233
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 2.2%
exploitation probability
2.2%top 19% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Unrestricted file upload vulnerability in Zero CMS 1.0 Alpha and earlier allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files by uploading an avatar file with an accepted Content-Type such as image/jpeg.
Affected products
n/a · n/apublic PoCs found — 2✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/4864cve_referencepacketstormsecurity.org/0801-exploits/zerocms-sql.txtunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.