Show filters
50 Total Results
Displaying 41-50 of 50
Sort by:
Attacker Value
Unknown
CVE-2012-1392
Disclosure Date: March 07, 2012 (last updated October 04, 2023)
Unspecified vulnerability in the Dolphin Browser HD (mobi.mgeek.TunnyBrowser) application 6.2.0, 7.2.1, 7.3.0, and 7.4.0 for Android has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2012-0873
Disclosure Date: February 23, 2012 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Boonex Dolphin before 7.0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) explain parameter to explanation.php or the (2) photos_only, (3) online_only, or (4) mode parameters to viewFriends.php.
0
Attacker Value
Unknown
CVE-2011-3728
Disclosure Date: September 23, 2011 (last updated October 04, 2023)
Dolphin 7.0.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by xmlrpc/BxDolXMLRPCProfileView.php and certain other files.
0
Attacker Value
Unknown
CVE-2010-1730
Disclosure Date: May 06, 2010 (last updated October 04, 2023)
Dolphin Browser 2.5.0 on the HTC Hero allows remote attackers to cause a denial of service (application crash) via JavaScript that writes <marquee> sequences in an infinite loop.
0
Attacker Value
Unknown
CVE-2008-4207
Disclosure Date: September 24, 2008 (last updated October 04, 2023)
Attachmax Dolphin 2.1.0 and earlier does not properly protect info.php in the main folder, which allows remote attackers to obtain sensitive information via a direct request, which invokes the phpinfo function. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-4206
Disclosure Date: September 24, 2008 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in config.php in Attachmax Dolphin 2.1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the rel_path parameter.
0
Attacker Value
Unknown
CVE-2008-4205
Disclosure Date: September 24, 2008 (last updated October 04, 2023)
SQL injection vulnerability in search.php Attachmax Dolphin 2.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter in a Search action to index.php. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-3167
Disclosure Date: July 14, 2008 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in BoonEx Dolphin 6.1.2, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) dir[plugins] parameter to (a) HTMLSax3.php and (b) safehtml.php in plugins/safehtml/ and the (2) sIncPath parameter to (c) ray/modules/global/inc/content.inc.php. NOTE: vector 1 might be a problem in SafeHTML instead of Dolphin.
0
Attacker Value
Unknown
CVE-2006-5410
Disclosure Date: October 20, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in templates/tmpl_dfl/scripts/index.php in BoonEx Dolphin 5.2 allows remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter. NOTE: it is possible that this issue overlaps CVE-2006-4189.
0
Attacker Value
Unknown
CVE-2006-4189
Disclosure Date: August 17, 2006 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.
0