CVE-2021-25755: Low severity jetbrains code with me vulnerability
Published Feb 3, 2021
·Updated
In JetBrains Code With Me before 2020.3, an attacker on the local network, knowing a session ID, could get access to the encrypted traffic.
Affected Software
1 affected component
JetBrains Code With Me Jetbrains<2020.3
Event History
Feb 3, 2021
CVE Published
via MITRE·03:13 PM
Data Sourced
via MITRE·03:13 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-25755?
CVE-2021-25755 is classified as a medium severity vulnerability.
2
How do I fix CVE-2021-25755?
To mitigate CVE-2021-25755, update JetBrains Code With Me to version 2020.3 or later.
3
Who is affected by CVE-2021-25755?
Users of JetBrains Code With Me versions prior to 2020.3 on local networks are affected by CVE-2021-25755.
4
What type of attack does CVE-2021-25755 enable?
CVE-2021-25755 allows an attacker on the same local network to decrypt traffic using a known session ID.
5
When was CVE-2021-25755 reported?
CVE-2021-25755 was reported in early 2021 and affects versions of the software released before 2020.3.