Description
In Eclipse Kura versions up to 4.0.0, Kura exposes the underlying Ui Web server version in its replies. This can be used as a hint by an attacker to specifically craft attacks to the web server run by Kura.
Remediation
References
http://www.securityfocus.com/bid/107844
https://bugs.eclipse.org/bugs/show_bug.cgi?id=545834
Related Vulnerabilities
CVE-2018-9861 Vulnerability in npm package ckeditor-dev
CVE-2016-10735 Vulnerability in maven package ru.taskurotta:bootstrap
CVE-2021-21391 Vulnerability in npm package @ckeditor/ckeditor5-font
CVE-2017-16213 Vulnerability in npm package mfrserver
CVE-2020-4035 Vulnerability in npm package @nozbe/watermelondb