Vulnerability Details CVE-2012-2735
Session fixation vulnerability in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote attackers to hijack web sessions via a crafted session cookie.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.2%
CVSS Severity
CVSS v2 Score 4.9
Products affected by CVE-2012-2735
-
cpe:2.3:a:trevor_mckay:cumin:0.1.3160-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.4369-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.4410-2
-
cpe:2.3:a:trevor_mckay:cumin:0.1.4494-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.4794-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.4916-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5033-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5037-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5054-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5068-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5092-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5098-2
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5105-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5137-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5137-2
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5137-3
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5137-4
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5137-5
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5192-1
-
cpe:2.3:a:trevor_mckay:cumin:0.1.5192-4
-
cpe:2.3:o:redhat:enterprise_mrg:2.0