CVE-2019-10243: Eclipse Kura

Medium severity, CVSS 5.3. EPSS: 1.3% chance of exploitation in the next 30 days.

In Eclipse Kura versions up to 4.0.0, Kura exposes the underlying Ui Web server version in its replies. This can be used as a hint by an attacker to specifically craft attacks to the web server run by Kura.

Affected products

  • Eclipse Kura: up to and including 4.0.0

Published 2019-04-09. Last modified 2026-06-17.