CVE-2017-8316

IntelliJ IDEA XML parser was found vulnerable to XML External Entity attack, an attacker can exploit the vulnerability by implementing malicious code on both Androidmanifest.xml.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jetbrains:intellij_idea:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:33

Type Values Removed Values Added
References () http://git.jetbrains.org/?p=idea/adt-tools-base.git%3Ba=commit%3Bh=a778b2b88515513654e002cd51cbe8eb8226e96b - () http://git.jetbrains.org/?p=idea/adt-tools-base.git%3Ba=commit%3Bh=a778b2b88515513654e002cd51cbe8eb8226e96b -
References () https://research.checkpoint.com/parsedroid-targeting-android-development-research-community/ - Exploit, Third Party Advisory () https://research.checkpoint.com/parsedroid-targeting-android-development-research-community/ - Exploit, Third Party Advisory
References () https://youtrack.jetbrains.com/issue/IDEA-175381 - Broken Link () https://youtrack.jetbrains.com/issue/IDEA-175381 - Broken Link

07 Nov 2023, 02:50

Type Values Removed Values Added
References
  • {'url': 'http://git.jetbrains.org/?p=idea/adt-tools-base.git;a=commit;h=a778b2b88515513654e002cd51cbe8eb8226e96b', 'name': 'http://git.jetbrains.org/?p=idea/adt-tools-base.git;a=commit;h=a778b2b88515513654e002cd51cbe8eb8226e96b', 'tags': ['Patch', 'Third Party Advisory'], 'refsource': 'CONFIRM'}
  • () http://git.jetbrains.org/?p=idea/adt-tools-base.git%3Ba=commit%3Bh=a778b2b88515513654e002cd51cbe8eb8226e96b -

Information

Published : 2018-08-03 15:29

Updated : 2024-11-21 03:33


NVD link : CVE-2017-8316

Mitre link : CVE-2017-8316

CVE.ORG link : CVE-2017-8316


JSON object : View

Products Affected

jetbrains

  • intellij_idea
CWE
CWE-611

Improper Restriction of XML External Entity Reference