QID 375892
Date Published: 2021-09-29
QID 375892: JetBrains Intellij IDEA XXE In License Server Functionality Vulnerability
IntelliJ IDEA is an integrated development environment written in Java for developing computer software
Affected Versions:
Before 2020.3.3.0
QID Detection Logic(Authenticated)
This QID detects the vulnerable version by checking the JetBrains Intellij IDEA.exe file version.
Potentially insecure deserialization of the workspace model could lead to local code execution.
Solution
Refer to JetBrains advisory /jetbrains-security-bulletin-2021 for affected packages and patching details.
Vendor References
- jetbrains-security-bulletin-2021 -
blog.jetbrains.com/blog/2021/05/07/jetbrains-security-bulletin-q1-2021/
CVEs related to QID 375892
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| /jetbrains-security-bulletin-q1-2021 |
|