First published: Wed Jan 15 2020(Updated: )
JetBrains IDETalk plugin before version 193.4099.10 allows XXE
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains IDETalk | <193.4099.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-18412 is classified as a medium severity vulnerability due to the potential for XML external entity injection (XXE).
To fix CVE-2019-18412, you should upgrade the JetBrains IDETalk plugin to version 193.4099.10 or later.
CVE-2019-18412 is an XML external entity (XXE) injection vulnerability.
CVE-2019-18412 affects all versions of JetBrains IDETalk prior to 193.4099.10.
Attackers exploiting CVE-2019-18412 can potentially read arbitrary files or conduct other malicious actions on the server.