Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple PHP remote file inclusion vulnerabilities in BoonEx Dolphin 6.1.2, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) dir[plugins] parameter to (a) HTMLSax3.php and (b) safehtml.php in plugins/safehtml/ and the (2) sIncPath parameter to (c) ray/modules/global/inc/content.inc.php. NOTE: vector 1 might be a problem in SafeHTML instead of Dolphin.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Boonex Dolphin 多个远程文件包含漏洞
Vulnerability Description
BoonEx Dolphin 是一款社交构建平台软件。 BoonEx Dolphin 6.1.2存在多个PHP远程文件包含漏洞。在register_globals被中止时, 远程攻击者通过(1)对 (a) HTMLSax3.php 和 (b) plugins/safehtml/的safehtml.php的 dir[plugins] 参数 以及 (2) 对 (c) ray/modules/global/inc/content.inc.php的sIncPath parameter的一个URL来执行任意PHP代
CVSS Information
N/A
Vulnerability Type
N/A