CVE-2012-2695: SQL Injection in Ruby on Rails | NextGuard