Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dolphin HIGH 8.8
CVE-2013-3638

SQL injection vulnerability in Boonex Dolphin before 7.1.3 allows remote authenticated users to execute arbitrary SQL commands via the 'pathes' param…

Fix: 7.1.3+
Fix from $1,950 2020-02-06
Dolphin MEDIUM 6.8
CVE-2014-4333

Cross-site request forgery (CSRF) vulnerability in administration/profiles.php in Dolphin 7.1.4 and earlier allows remote attackers to hijack the aut…

Fix: after 7.1.4
Fix from $1,600 2014-06-19
Dolphin MEDIUM 6.5
CVE-2014-3810

SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute …

Fix: after 7.1.4
Fix from $1,600 2014-06-19
Dolphin MEDIUM 5.0
CVE-2011-3728

Dolphin 7.0.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an …

Mitigation only
Fix from $1,600 2011-09-23
Orca HIGH 9.3
CVE-2008-5167

PHP remote file inclusion vulnerability in layout/default/params.php in Boonex Orca 2.0 and 2.0.2, when register_globals is enabled, allows remote at…

No fix yet
Fix from $1,950 2008-11-19
Ray HIGH 9.3
CVE-2008-3166EPSS 6%

PHP remote file inclusion vulnerability in modules/global/inc/content.inc.php in BoonEx Ray 3.5, when register_globals is enabled, allows remote atta…

No fix yet
Fix from $1,950 2008-07-14
Dolphin HIGH 9.3
CVE-2008-3167EPSS 6%

Multiple PHP remote file inclusion vulnerabilities in BoonEx Dolphin 6.1.2, when register_globals is enabled, allow remote attackers to execute arbit…

No fix yet
Fix from $1,950 2008-07-14
Dolphin MEDIUM 5.1
CVE-2006-5410

PHP remote file inclusion vulnerability in templates/tmpl_dfl/scripts/index.php in BoonEx Dolphin 5.2 allows remote attackers to execute arbitrary PH…

No fix yet
Fix from $1,600 2006-10-20
Dolphin MEDIUM 5.1
CVE-2006-4189EPSS 6%

Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] para…

No fix yet
Fix from $1,600 2006-08-17
Barracuda HIGH 7.5
CVE-2006-2133

SQL injection vulnerability in index.php in BoonEx Barracuda 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) li…

Fix: after 1.1
Fix from $1,950 2006-05-01