Show filters
50 Total Results
Displaying 31-40 of 50
Sort by:
Attacker Value
Unknown
CVE-2018-16163
Disclosure Date: November 15, 2018 (last updated November 27, 2024)
OpenDolphin 2.7.0 and earlier allows authenticated attackers to bypass authentication to create and/or delete other users accounts via unspecified vectors.
0
Attacker Value
Unknown
CVE-2018-16161
Disclosure Date: November 15, 2018 (last updated November 27, 2024)
OpenDolphin 2.7.0 and earlier allows authenticated users to gain administrative privileges and perform unintended operations.
0
Attacker Value
Unknown
CVE-2017-17553
Disclosure Date: December 12, 2017 (last updated November 26, 2024)
The Dolphin Browser for Android 12.0.2 suffers from an insecure parsing implementation of the Intent URI scheme. This vulnerability could allow attackers to abuse this implementation through a malicious Intent URI, in order to invoke private Activities within the Dolphin Browser.
0
Attacker Value
Unknown
CVE-2017-17551
Disclosure Date: December 11, 2017 (last updated November 26, 2024)
The Backup and Restore feature in Mobotap Dolphin Browser for Android 12.0.2 suffers from an arbitrary file write vulnerability when attempting to restore browser settings from a malicious Dolphin Browser backup file. This arbitrary file write vulnerability allows an attacker to overwrite a specific executable in the Dolphin Browser's data directory with a crafted malicious executable. Every time the Dolphin Browser is launched, it will attempt to run the malicious executable from disk, thus executing the attacker's code.
0
Attacker Value
Unknown
CVE-2017-8936
Disclosure Date: May 15, 2017 (last updated November 08, 2023)
The MoboTap Dolphin Web Browser - Fast Private Internet Search app 9.23.0 through 9.23.2 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-4333
Disclosure Date: June 19, 2014 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in administration/profiles.php in Dolphin 7.1.4 and earlier allows remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the members[] parameter, related to CVE-2014-3810.
0
Attacker Value
Unknown
CVE-2014-3810
Disclosure Date: June 19, 2014 (last updated October 05, 2023)
SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the members[] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-4333.
0
Attacker Value
Unknown
CVE-2012-2635
Disclosure Date: June 15, 2012 (last updated October 04, 2023)
The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.
0
Attacker Value
Unknown
CVE-2012-1404
Disclosure Date: March 07, 2012 (last updated October 04, 2023)
Unspecified vulnerability in the Dolphin Browser Mini (com.dolphin.browser) application 2.2 for Android has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2012-1403
Disclosure Date: March 07, 2012 (last updated October 04, 2023)
Unspecified vulnerability in the Dolphin Browser CN (com.dolphin.browser.cn) application 6.3.1 and 7.2.1 for Android has unknown impact and attack vectors.
0