Vulnerability Details CVE-2015-1313
JetBrains TeamCity 8 and 9 before 9.0.2 allows bypass of account-creation restrictions via a crafted request because the required request data can be deduced by reading HTML and JavaScript files that are returned to the web browser after an initial unauthenticated request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 1.0%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2015-1313
-
cpe:2.3:a:jetbrains:teamcity:8.0
-
cpe:2.3:a:jetbrains:teamcity:8.0.1
-
cpe:2.3:a:jetbrains:teamcity:8.0.2
-
cpe:2.3:a:jetbrains:teamcity:8.0.3
-
cpe:2.3:a:jetbrains:teamcity:8.0.4
-
cpe:2.3:a:jetbrains:teamcity:8.0.5
-
cpe:2.3:a:jetbrains:teamcity:8.0.6
-
cpe:2.3:a:jetbrains:teamcity:8.1
-
cpe:2.3:a:jetbrains:teamcity:8.1.1
-
cpe:2.3:a:jetbrains:teamcity:8.1.2
-
cpe:2.3:a:jetbrains:teamcity:8.1.3
-
cpe:2.3:a:jetbrains:teamcity:8.1.4
-
cpe:2.3:a:jetbrains:teamcity:8.1.5
-
cpe:2.3:a:jetbrains:teamcity:9.0
-
cpe:2.3:a:jetbrains:teamcity:9.0.1