The com_contenthistory component in Joomla! 3.2 before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.
http://www.securitytracker.com/id/1033950
http://developer.joomla.org/security-centre/629-20151002-core-acl-violations.html