Cross-site scripting (XSS) vulnerability in search.php in BitScripts Bits Video Script 2.04 and 2.05 Gold Beta allows remote attackers to inject arbitrary web script or HTML via the order parameter.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/55739http://secunia.com/advisories/38252http://osvdb.org/61827http://www.packetstormsecurity.com/1001-exploits/bitsvs-xssuploadrfi.txt