PT-2012-4018 · Gallery · Gallery
Published
2012-04-22
·
Updated
2017-12-14
·
CVE-2012-2405
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Gallery 2 versions prior to 2.3.2
Gallery 3 versions prior to 3.0.3
Description
The software does not properly implement encryption. This has an unspecified impact and attack vectors.
Recommendations
For Gallery 2 versions prior to 2.3.2, update to version 2.3.2 or later to resolve the issue.
For Gallery 3 versions prior to 3.0.3, update to version 3.0.3 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gallery