Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  Security Vulnerabilities
In JetBrains TeamCity before 2020.2.3, account takeover was potentially possible during a password reset.
CVSS Score
8.8
EPSS Score
0.012
Published
2021-05-11
In JetBrains TeamCity before 2020.2.3, insufficient checks of the redirect_uri were made during GitHub SSO token exchange.
CVSS Score
7.5
EPSS Score
0.007
Published
2021-05-11
In JetBrains TeamCity before 2020.2.4 on Windows, arbitrary code execution on TeamCity Server was possible.
CVSS Score
9.8
EPSS Score
0.022
Published
2021-05-11
In JetBrains TeamCity before 2020.2.4, OS command injection leading to remote code execution was possible.
CVSS Score
9.8
EPSS Score
0.032
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, permission checks for changing TeamCity plugins were implemented improperly.
CVSS Score
5.3
EPSS Score
0.009
Published
2021-05-11
In JetBrains TeamCity before 2020.2.3, stored XSS was possible on several pages.
CVSS Score
5.4
EPSS Score
0.005
Published
2021-05-11
In JetBrains TeamCity before 2020.2.3, argument injection leading to remote code execution was possible.
CVSS Score
9.8
EPSS Score
0.032
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, stored XSS on a tests page was possible.
CVSS Score
5.4
EPSS Score
0.005
Published
2021-05-11
Information disclosure in the TeamCity plugin for IntelliJ before 2020.2.2.85899 was possible because a local temporary file had Insecure Permissions.
CVSS Score
3.3
EPSS Score
0.002
Published
2021-05-11
In the TeamCity IntelliJ plugin before 2020.2.2.85899, DoS was possible.
CVSS Score
7.5
EPSS Score
0.015
Published
2021-05-11


Contact Us

Shodan ® - All rights reserved