CVE-2010-0366
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 3.5%
from disclosure to weapon0 days
Published on NVDJan 21
1st PoCJan 18
exploitation probability
3.5%top 12% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Multiple unrestricted file upload vulnerabilities in (1) register.php and (2) addvideo.php in BitScripts Bits Video Script 2.04 and 2.05 Gold Beta allow remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.
Affected products
n/a · n/apublic PoCs found — 3✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/34120exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/34119cve_referencewww.packetstormsecurity.com/1001-exploits/bitsvs-xssuploadrfi.txtunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.