
🚨 CVE-2013-10067: Glosswo... Admin-level file upload to webroot with zero validation - classic PHP shell drop that's been weaponized in MSF for years. #RCE #FileUpload #PHP. https://zerodaysignal.com/vulnerability/CVE-2013-10067 #netsec #vulnerability #CVE #sysadmin #zeroday
Post summary
The tweet draws attention to CVE-2013-10067’s admin‑level file‑upload flaw that can drop PHP shells, links to a public PoC on zerodaysignal.com, and notes the vulnerability is already weaponized in Metasploit. No active exploitation or patch information is provided.
