CVE-2012-4071

Com Rsgallery2 < 2.2.1 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in the comments module in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remote attackers to inject arbitrary web script or HTML via crafted BBCode markup in a comment.

Scores

EPSS 0.0033
EPSS Percentile 55.5%

Classification

CWE
CWE-79
Status published

Affected Products (39)

rsgallery2/com_rsgallery2 < 2.2.1
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
rsgallery2/com_rsgallery2
... and 24 more

Timeline

Published Aug 10, 2012
Tracked Since Feb 18, 2026