CVE Database
/

CVE-2018-8035

Back to search

CVE-2018-8035

Published: May 1, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

This vulnerability relates to the user's browser processing of DUCC webpage input data.The javascript comprising Apache UIMA DUCC (<= 2.2.2) which runs in the user's browser does not sufficiently filter user supplied inputs, which may result in unintended execution of user supplied javascript code.

VendorProductVersions

Apache

Apache UIMA DUCC

affected
Apache UIMA DUCC releases including and prior to 2.2.2

References

108195
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now