Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the members[] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-4333.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BoonEx Dolphin SQL注入漏洞
Vulnerability Description
Boonex Dolphin是澳大利亚Boonex公司的一套开源交友社区系统。该系统包含在线音视频聊天、视频分享和个人博客等模块。 BoonEx Dolphin 7.1.4及之前版本的administration/profiles.php脚本中存在SQL注入漏洞。远程攻击者可借助‘members[]’参数利用该漏洞执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A