Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:rsgallery2:com_rsgallery2:1.11.7:alpha:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2012-4235 |
The RSGallery2 (com_rsgallery2) component before 3.2.0 for Joomla! 2.5.x does not place index.html files in image directories, which allows remote attackers to list image filenames via a request for a directory URI. Published: August 10, 2012; 6:34:48 AM -0400 |
V3.x:(not available) V2.0: 5.0 MEDIUM |
CVE-2012-4071 |
Cross-site scripting (XSS) vulnerability in the comments module in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remote attackers to inject arbitrary web script or HTML via crafted BBCode markup in a comment. Published: August 10, 2012; 6:34:48 AM -0400 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
CVE-2012-3554 |
SQL injection vulnerability in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remote attackers to execute arbitrary SQL commands via unspecified vectors. Published: August 10, 2012; 6:34:48 AM -0400 |
V3.x:(not available) V2.0: 7.5 HIGH |