9.8

CVE-2021-45977

JetBrains IntelliJ IDEA 2021.3.1 Preview, IntelliJ IDEA 2021.3.1 RC, PyCharm Professional 2021.3.1 RC, GoLand 2021.3.1, PhpStorm 2021.3.1 Preview, PhpStorm 2021.3.1 RC, RubyMine 2021.3.1 Preview, RubyMine 2021.3.1 RC, CLion 2021.3.1, WebStorm 2021.3.1 Preview, and WebStorm 2021.3.1 RC (used as Remote Development backend IDEs) bind to the 0.0.0.0 IP address. The fixed versions are: IntelliJ IDEA 2021.3.1, PyCharm Professional 2021.3.1, GoLand 2021.3.2, PhpStorm 2021.3.1 (213.6461.83), RubyMine 2021.3.1, CLion 2021.3.2, and WebStorm 2021.3.1.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
JetBrainsClion Version2021.3.1
JetBrainsGoLand Version2021.3.1
JetBrainsIntelliJ IDEA Version2021.3.1 Updatepreview
JetBrainsIntelliJ IDEA Version2021.3.1 Updaterc
JetBrainsPhpStorm Version2021.3.1 Updatepreview
JetBrainsPhpStorm Version2021.3.1 Updaterc
JetBrainsPyCharm Version2021.3.1 Update2021.3.1 SwEditionprofessional
JetBrainsRubyMine Version2021.3.1 Updatepreview
JetBrainsRubyMine Version2021.3.1 Updaterc
JetBrainsWebStorm Version2021.3.1 Updatepreview
JetBrainsWebStorm Version2021.3.1 Updaterc
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.01% 0.001
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P