CVE-2019-10104
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In several JetBrains IntelliJ IDEA Ultimate versions, an Application Server run configuration (for Tomcat, Jetty, Resin, or CloudBees) with the default setting allowed a remote attacker to execute code when the configuration is running, because a JMX server listened on all interfaces instead of localhost only. The issue has been fixed in the following versions: 2018.3.4, 2018.2.8, 2018.1.8, and 2017.3.7.
En varias versiones de IntelliJ IDEA Ultimate de JetBrains, una configuración de ejecución del Servidor de aplicaciones (para Tomcat, Jetty, Resin o CloudBees) con la configuración predeterminada permitió que un atacante remoto ejecutara código cuando la configuración se está ejecutando, porque un servidor JMX escuchó en todas las interfaces. de localhost solamente. El problema se ha solucionado en las siguientes versiones: 2018.3.4, 2018.2.8, 2018.1.8 y 2017.3.7.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-03-26 CVE Reserved
- 2019-07-03 CVE Published
- 2024-08-04 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://blog.jetbrains.com/blog/2019/06/19/jetbrains-security-bulletin-q1-2019 | 2020-08-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Jetbrains Search vendor "Jetbrains" | Intellij Idea Search vendor "Jetbrains" for product "Intellij Idea" | >= 2018.1 < 2018.1.8 Search vendor "Jetbrains" for product "Intellij Idea" and version " >= 2018.1 < 2018.1.8" | - |
Affected
| ||||||
Jetbrains Search vendor "Jetbrains" | Intellij Idea Search vendor "Jetbrains" for product "Intellij Idea" | >= 2018.2 < 2018.2.8 Search vendor "Jetbrains" for product "Intellij Idea" and version " >= 2018.2 < 2018.2.8" | - |
Affected
| ||||||
Jetbrains Search vendor "Jetbrains" | Intellij Idea Search vendor "Jetbrains" for product "Intellij Idea" | >= 2018.3 < 2018.3.4 Search vendor "Jetbrains" for product "Intellij Idea" and version " >= 2018.3 < 2018.3.4" | - |
Affected
| ||||||
Jetbrains Search vendor "Jetbrains" | Intellij Idea Search vendor "Jetbrains" for product "Intellij Idea" | >= 2018.3.5 < 2018.3.7 Search vendor "Jetbrains" for product "Intellij Idea" and version " >= 2018.3.5 < 2018.3.7" | - |
Affected
|