CVE

Id
62188  
CVE No.
CVE-2013-2241  
Status
Candidate  
Description
modules/gallery/helpers/data_rest.php in Gallery 3 before 3.0.9 allows remote attackers to bypass intended access restrictions and obtain sensitive information (image files) via the "full" string in the size parameter.  
Phase
Assigned (20130219)  
Votes
None (candidate not yet proposed)  
Comments