CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. It affects Apache, Java.
CVE
CVE-2018-8035
Severity
MEDIUM
CVSS
6.1
EPSS
4.88%
Apache Java
Original NVD Description
This vulnerability relates to the user's browser processing of DUCC webpage input data.The javascript comprising Apache UIMA DUCC (<= 2.2.2) which runs in the user's browser does not sufficiently filter user supplied inputs, which may result in unintended execution of user supplied javascript code.
Related CVEs
Other vulnerabilities affecting the same vendor(s)