Vulnerabilities
Vulnerable Software
In JetBrains TeamCity before 2024.03.2 users could perform actions that should not be available to them based on their permissions
CVSS Score
6.5
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2024.03.2 certain TeamCity API endpoints did not check user permissions
CVSS Score
6.5
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2024.03.2 server was susceptible to DoS attacks with incorrect auth tokens
CVSS Score
5.9
EPSS Score
0.004
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 authentication bypass was possible in specific edge cases
CVSS Score
8.1
EPSS Score
0.005
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via OAuth connection settings was possible
CVSS Score
4.6
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2023.05.6, 2023.11.5 stored XSS in Commit status publisher was possible
CVSS Score
4.6
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2024.03.2 several stored XSS in untrusted builds settings were possible
CVSS Score
4.6
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2024.03.2 stored XSS via build step settings was possible
CVSS Score
4.6
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 an XSS could be executed via certain report grouping and filtering operations
CVSS Score
5.4
EPSS Score
0.003
Published
2024-05-29
In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5 stored XSS via third-party reports was possible
CVSS Score
4.6
EPSS Score
0.003
Published
2024-05-29


Contact Us

Shodan ® - All rights reserved