Rsgallery2 is a modestly deployed image gallery extension for Joomla content-management systems, and its vulnerability profile concentrates around common web-application input-handling and data-exposure weaknesses including cross-site scripting, SQL injection, and exposure of sensitive information. Treat this as a focused vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Rsgallery2 over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-3554HIGH SQL injection vulnerability in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remote attackers to execute arbi | Aug 10, 2012 | 7.5 | 23 | NO | NO |
CVE-2012-4235MEDIUM The RSGallery2 (com_rsgallery2) component before 3.2.0 for Joomla! 2.5.x does not place index.html files in image directories, which allows remote attackers to list image filenames | Aug 10, 2012 | 5.0 | 18 | NO | NO |
CVE-2012-4071MEDIUM Cross-site scripting (XSS) vulnerability in the comments module in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, all | Aug 10, 2012 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rsgallery2.
Media articles that mention a CVE ID that affects a product developed by Rsgallery2 — matched by CVE ID, not by vendor name.