Show filters
50 Total Results
Displaying 31-40 of 50
Sort by:
Attacker Value
Unknown

CVE-2018-16163

Disclosure Date: November 15, 2018 (last updated November 27, 2024)
OpenDolphin 2.7.0 and earlier allows authenticated attackers to bypass authentication to create and/or delete other users accounts via unspecified vectors.
0
Attacker Value
Unknown

CVE-2018-16161

Disclosure Date: November 15, 2018 (last updated November 27, 2024)
OpenDolphin 2.7.0 and earlier allows authenticated users to gain administrative privileges and perform unintended operations.
0
Attacker Value
Unknown

CVE-2017-17553

Disclosure Date: December 12, 2017 (last updated November 26, 2024)
The Dolphin Browser for Android 12.0.2 suffers from an insecure parsing implementation of the Intent URI scheme. This vulnerability could allow attackers to abuse this implementation through a malicious Intent URI, in order to invoke private Activities within the Dolphin Browser.
0
Attacker Value
Unknown

CVE-2017-17551

Disclosure Date: December 11, 2017 (last updated November 26, 2024)
The Backup and Restore feature in Mobotap Dolphin Browser for Android 12.0.2 suffers from an arbitrary file write vulnerability when attempting to restore browser settings from a malicious Dolphin Browser backup file. This arbitrary file write vulnerability allows an attacker to overwrite a specific executable in the Dolphin Browser's data directory with a crafted malicious executable. Every time the Dolphin Browser is launched, it will attempt to run the malicious executable from disk, thus executing the attacker's code.
0
Attacker Value
Unknown

CVE-2017-8936

Disclosure Date: May 15, 2017 (last updated November 08, 2023)
The MoboTap Dolphin Web Browser - Fast Private Internet Search app 9.23.0 through 9.23.2 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Attacker Value
Unknown

CVE-2014-4333

Disclosure Date: June 19, 2014 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in administration/profiles.php in Dolphin 7.1.4 and earlier allows remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the members[] parameter, related to CVE-2014-3810.
0
Attacker Value
Unknown

CVE-2014-3810

Disclosure Date: June 19, 2014 (last updated October 05, 2023)
SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the members[] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-4333.
0
Attacker Value
Unknown

CVE-2012-2635

Disclosure Date: June 15, 2012 (last updated October 04, 2023)
The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.
0
Attacker Value
Unknown

CVE-2012-1404

Disclosure Date: March 07, 2012 (last updated October 04, 2023)
Unspecified vulnerability in the Dolphin Browser Mini (com.dolphin.browser) application 2.2 for Android has unknown impact and attack vectors.
0
Attacker Value
Unknown

CVE-2012-1403

Disclosure Date: March 07, 2012 (last updated October 04, 2023)
Unspecified vulnerability in the Dolphin Browser CN (com.dolphin.browser.cn) application 6.3.1 and 7.2.1 for Android has unknown impact and attack vectors.
0