PT-2019-19907 · Jetbrains · Intellij Idea Ultimate

Published

2019-07-03

·

Updated

2020-08-24

·

CVE-2019-9873

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JetBrains IntelliJ IDEA Ultimate versions prior to 2018.1.8 JetBrains IntelliJ IDEA Ultimate versions prior to 2018.2.8 JetBrains IntelliJ IDEA Ultimate versions prior to 2018.3.5 JetBrains IntelliJ IDEA Ultimate versions prior to 2019.1
Description The issue concerns saving server credentials in cleartext in the IDE configuration files when creating Task Servers configurations.
Recommendations For versions prior to 2018.1.8, update to version 2018.1.8 or later. For versions prior to 2018.2.8, update to version 2018.2.8 or later. For versions prior to 2018.3.5, update to version 2018.3.5 or later. For versions prior to 2019.1, update to version 2019.1 or later.

Fix

Insufficiently Protected Credentials

Cleartext Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9873

Affected Products

Intellij Idea Ultimate