Skip to content

CVE-2014-3810

SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the members[] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-4333.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0036 (0.4%)
Percentil: 57.8%
EPSS: 2026-05-06

Afecta

boonex:dolphin

Descripción técnica

SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the members[] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-4333.

Publicada: 19/6/2014, 14:55:07
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo