CVE-2012-2684: Red Hat Enterprise Mrg
High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.
Multiple SQL injection vulnerabilities in the get_sample_filters_by_signature function in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allow remote attackers to execute arbitrary SQL commands via the (1) agent or (2) object id.
Affected products
- Red Hat Enterprise Mrg: version 2.0 only
- Trevor Mckay Cumin: up to and including 0.1.5192-4; version 0.1.3160-1 only; version 0.1.4369-1 only; version 0.1.4410-2 only; version 0.1.4494-1 only; version 0.1.4794-1 only; …
Published 2012-09-28. Last modified 2026-06-16.