Skip to content
Noroxi

efiction records

3 published records for vendor efiction.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    3 records
    • CVE-2007-1118
      28Monitor

      Multiple PHP remote file inclusion vulnerabilities in eFiction 3.1.1 and earlier allow remote attackers to execute arbitrary PHP code via a

      MediumCVSS 6.8Proof of conceptEPSS 3%

      efiction · efictionFeb 26, 2007

    • CVE-2008-2754
      27Monitor

      SQL injection vulnerability in toplists.php in eFiction 3.0 and 3.4.3, when magic_quotes_gpc is disabled, allows remote attackers to execute

      MediumCVSS 6.8Proof of conceptEPSS 1%

      efiction · efictionJun 18, 2008

    • CVE-2006-4427
      21Monitor

      index.php in eFiction before 2.0.7 allows remote attackers to bypass authentication and gain privileges by setting the (1) adminloggedin, (2

      MediumCVSS 5.1Proof of conceptEPSS 3%

      efiction · efictionAug 28, 2006