Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  Security Vulnerabilities
In JetBrains TeamCity before 2022.10.2 jVMTI was enabled by default on agents.
CVSS Score
5.2
EPSS Score
0.003
Published
2023-02-23
In JetBrains TeamCity before 2022.10.2 there was an XSS vulnerability in the user creation process.
CVSS Score
5.4
EPSS Score
0.595
Published
2023-02-23
In JetBrains TeamCity before 2022.10.2 there was an XSS vulnerability in the group creation process.
CVSS Score
5.4
EPSS Score
0.004
Published
2023-02-23
In JetBrains TeamCity between 2022.10 and 2022.10.1 a custom STS endpoint allowed internal port scanning.
CVSS Score
4.1
EPSS Score
0.005
Published
2022-12-08
In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.
CVSS Score
6.6
EPSS Score
0.004
Published
2022-12-08
In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings
CVSS Score
2.2
EPSS Score
0.004
Published
2022-11-03
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters
CVSS Score
6.5
EPSS Score
0.005
Published
2022-11-03
In JetBrains TeamCity version between 2021.2 and 2022.10 access permissions for secure token health items were excessive
CVSS Score
2.7
EPSS Score
0.004
Published
2022-11-03
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
CVSS Score
6.5
EPSS Score
0.005
Published
2022-11-03
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable
CVSS Score
4.4
EPSS Score
0.003
Published
2022-09-23


Contact Us

Shodan ® - All rights reserved