Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-4235

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2012-4235
Last Modified 10 Aug 2012 12:00:00
Published 10 Aug 2012 06:34:48
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2012-4235

Summary

The RSGallery2 (com_rsgallery2) component before 3.2.0 for Joomla! 2.5.x does not place index.html files in image directories, which allows remote attackers to list image filenames via a request for a directory URI.

Vulnerable Systems

Application

  • Com Rsgallery2 1.10.1

  • Com Rsgallery2 1.10.10

  • Com Rsgallery2 1.10.11

  • Com Rsgallery2 1.10.13

  • Com Rsgallery2 1.10.14

  • Com Rsgallery2 1.10.2

  • Com Rsgallery2 1.10.5

  • Com Rsgallery2 1.10.6

  • Com Rsgallery2 1.10.7

  • Com Rsgallery2 1.10.8

  • Com Rsgallery2 1.10.9

  • Com Rsgallery2 1.11.0

  • Com Rsgallery2 1.11.1

  • Com Rsgallery2 1.11.10

  • Com Rsgallery2 1.11.11

  • Com Rsgallery2 1.11.2

  • Com Rsgallery2 1.11.3

  • Com Rsgallery2 1.11.4

  • Com Rsgallery2 1.11.5

  • Com Rsgallery2 1.11.6

  • Com Rsgallery2 1.11.7

  • Com Rsgallery2 1.11.8

  • Com Rsgallery2 1.12.0

  • Com Rsgallery2 1.12.1

  • Com Rsgallery2 1.12.2

  • Com Rsgallery2 1.13.0

  • Com Rsgallery2 1.13.1

  • Com Rsgallery2 1.14.0

  • Com Rsgallery2 1.14.1

  • Com Rsgallery2 1.9.0-4

  • Com Rsgallery2 1.9.4

  • Com Rsgallery2 1.9.5

  • Com Rsgallery2 2.1.0

  • Com Rsgallery2 2.1.1

  • Com Rsgallery2 3.0

  • Com Rsgallery2 3.0.1

  • Com Rsgallery2 3.1.0


References

CONFIRM - http://joomlacode.org/gf/download/frsrelease/17326/75428/com_rsgallery2_3.2.0.zip

CONFIRM - http://www.rsgallery2.nl/announcements/rsgallery2_3.2.0_and_2.3.0_released_16845.0.html

CONFIRM - http://joomlacode.org/gf/project/rsgallery2/news/

CONFIRM - http://extensions.joomla.org/extensions/photos-a-images/photo-gallery/142


Last Updated: 27 May 2016 10:51:38