Beveiligingsadvies

CVE-2012-10038

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-08-11 14:54:39
Laatst bijgewerkt 2026-04-07 14:02:34
Toegewezen door VulnCheck
CVSS-score 9.3
Status PUBLISHED

Beschrijving

Auxilium RateMyPet contains an unauthenticated arbitrary file upload vulnerability in upload_banners.php. The banner upload feature fails to validate file types or enforce authentication, allowing remote attackers to upload malicious PHP files. These files are stored in a web-accessible /banners/ directory and can be executed directly, resulting in remote code execution.