5
CVSSv2

CVE-2013-2241

Published: 10/10/2013 Updated: 10/10/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

modules/gallery/helpers/data_rest.php in Gallery 3 prior to 3.0.9 allows remote malicious users to bypass intended access restrictions and obtain sensitive information (image files) via the "full" string in the size parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

menalto gallery 3.0

menalto gallery 3.0.2

menalto gallery 3.0.3

menalto gallery 3.0.4

menalto gallery 3.0.5

menalto gallery 3.0.1

menalto gallery 3.0.6

menalto gallery

menalto gallery 3.0.7