This is a technical writeup detailing two vulnerabilities in Dolphin 7.0.3: a blind SQL injection via the 'action' parameter in tags.php and a source code disclosure via gzip_loader.php. It includes proof-of-concept URLs but no functional exploit code.
Classification
Writeup 90%
Attack Type
Sqli | Info Leak
Complexity
Trivial
Reliability
Reliable
Target:Boonex Dolphin 7.0.3
No auth needed
Prerequisites:Network access to the target application