CVE-2019-18412: XEE
Published Jan 15, 2020
·Updated
JetBrains IDETalk plugin before version 193.4099.10 allows XXE
Affected Software
1 affected component
JetBrains IDETalk<193.4099.10
Event History
Jan 15, 2020
CVE Published
via MITRE·03:08 PM
Data Sourced
via MITRE·03:08 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-18412?
CVE-2019-18412 is classified as a medium severity vulnerability due to the potential for XML external entity injection (XXE).
2
How do I fix CVE-2019-18412?
To fix CVE-2019-18412, you should upgrade the JetBrains IDETalk plugin to version 193.4099.10 or later.
3
What type of vulnerability is CVE-2019-18412?
CVE-2019-18412 is an XML external entity (XXE) injection vulnerability.
4
Which versions of JetBrains IDETalk are affected by CVE-2019-18412?
CVE-2019-18412 affects all versions of JetBrains IDETalk prior to 193.4099.10.
5
What can attackers achieve with CVE-2019-18412?
Attackers exploiting CVE-2019-18412 can potentially read arbitrary files or conduct other malicious actions on the server.