eFiction.Image.Upload.Arbitrary.Command.Execution

description-logoDescription

It indicates a possible exploit of a remote file upload vulnerability in eFiction.

affected-products-logoAffected Products

efiction efiction 2.0
efiction efiction 1.1
efiction efiction 1.0

Impact logoImpact

The execution of arbitrary PHP code on the system.

recomended-action-logoRecommended Actions

A fix is available:
http://www.efiction.wallflowergirl.com/index.php

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2018-11-06 13.485