Skip to main content

Vendor/product archive

attachmax / dolphin CVEs

Beta · best-effort

3 CVEs tagged to attachmax / dolphin0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-4207

Published Sep 24, 2008

Attachmax Dolphin 2.1.0 and earlier does not properly protect info.php in the main folder, which allows remote attackers to obtain sensitive information via a direct request, whic…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4206

Published Sep 24, 2008

PHP remote file inclusion vulnerability in config.php in Attachmax Dolphin 2.1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP co…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-4205

Published Sep 24, 2008

SQL injection vulnerability in search.php Attachmax Dolphin 2.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter in a Search acti…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1