VYPR
High severity7.5NVD Advisory· Published Apr 9, 2019· Updated Jun 17, 2026

CVE-2019-10244

CVE-2019-10244

Description

In Eclipse Kura versions up to 4.0.0, the Web UI package and component services, the Artemis simple Mqtt component and the emulator position service (not part of the device distribution) could potentially be target of XXE attack due to an improper factory and parser initialisation.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Eclipse/Kura2 versions
    cpe:2.3:a:eclipse:kura:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:eclipse:kura:*:*:*:*:*:*:*:*range: <=4.0.0
    • (no CPE)range: <=4.0.0
  • The Eclipse Foundation/Eclipse Kurav5
    Range: unspecified

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.