SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the members[] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-4333.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-06-19T14:00:00

Updated: 2018-10-09T18:57:01

Reserved: 2014-05-21T00:00:00


Link: CVE-2014-3810

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-06-19T14:55:07.740

Modified: 2018-10-09T19:47:31.203


Link: CVE-2014-3810

JSON object: View

cve-icon Redhat Information

No data.

CWE