
🚨 CVE-2012-10037: Php... Unauthenticated RCE via direct exec() injection in drawimage.php - ancient PhpTax 0.8 still haunting servers with trivial shell access #RCE #PhpTax. https://zerodaysignal.com/vulnerability/CVE-2012-10037 #netsec #vulnerability #CVE #sysadmin #zeroday
Post summary
The tweet reports an unauthenticated RCE in old PhpTax 0.8 via exec() injection, links to a vulnerability page, and indicates trivial shell access, implying exploitation potential but not confirming active attacks.
