Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
teamcity vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2024-28173
In JetBrains TeamCity between 2023.11 and 2023.11.4 custom build parameters of the "password" type could be disclosed
NA
CVE-2024-28174
In JetBrains TeamCity prior to 2023.11.4 presigned URL generation requests in S3 Artifact Storage plugin were authorized improperly
9.8
CVSSv3
CVE-2024-27198
In JetBrains TeamCity prior to 2023.11.4 authentication bypass allowing to perform admin actions was possible
Jetbrains Teamcity
1 Metasploit module
14 Github repositories
6 Articles
NA
CVE-2024-27199
In JetBrains TeamCity prior to 2023.11.4 path traversal allowing to perform limited admin actions was possible
12 Github repositories
2 Articles
9.8
CVSSv3
CVE-2024-23917
In JetBrains TeamCity prior to 2023.11.3 authentication bypass leading to RCE was possible
Jetbrains Teamcity
1 Article
5.3
CVSSv3
CVE-2024-24936
In JetBrains TeamCity prior to 2023.11.2 access control at the S3 Artifact Storage plugin endpoint was missed
Jetbrains Teamcity
5.4
CVSSv3
CVE-2024-24937
In JetBrains TeamCity prior to 2023.11.2 stored XSS via agent distribution was possible
Jetbrains Teamcity
5.3
CVSSv3
CVE-2024-24938
In JetBrains TeamCity prior to 2023.11.2 limited directory traversal was possible in the Kotlin DSL documentation
Jetbrains Teamcity
5.3
CVSSv3
CVE-2024-24942
In JetBrains TeamCity prior to 2023.11.3 path traversal allowed reading data within JAR archives
Jetbrains Teamcity
8.8
CVSSv3
CVE-2023-50870
In JetBrains TeamCity prior to 2023.11.1 a CSRF on login was possible
Jetbrains Teamcity
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »