CVE-2012-2683: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) "error message displays" or (2) "in source HTML on certain pages."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2683?
CVE-2012-2683 has a moderate severity level due to its multiple cross-site scripting (XSS) vulnerabilities.
How do I fix CVE-2012-2683?
To fix CVE-2012-2683, update Cumin to version 0.1.5444 or later.
What software is affected by CVE-2012-2683?
CVE-2012-2683 affects multiple versions of Trevor McKay's Cumin prior to 0.1.5444 and Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0.
What type of vulnerability is CVE-2012-2683?
CVE-2012-2683 is classified as a cross-site scripting (XSS) vulnerability.
Can CVE-2012-2683 be exploited remotely?
Yes, CVE-2012-2683 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.