Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  Security Vulnerabilities
In JetBrains TeamCity between 2022.10 and 2022.10.1 a custom STS endpoint allowed internal port scanning.
CVSS Score
4.1
EPSS Score
0.0
Published
2022-12-08
In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.
CVSS Score
6.6
EPSS Score
0.0
Published
2022-12-08
In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings
CVSS Score
2.2
EPSS Score
0.0
Published
2022-11-03
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters
CVSS Score
6.5
EPSS Score
0.0
Published
2022-11-03
In JetBrains TeamCity version between 2021.2 and 2022.10 access permissions for secure token health items were excessive
CVSS Score
2.7
EPSS Score
0.0
Published
2022-11-03
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
CVSS Score
6.5
EPSS Score
0.0
Published
2022-11-03
In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable
CVSS Score
4.4
EPSS Score
0.0
Published
2022-09-23
In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases
CVSS Score
3.2
EPSS Score
0.0
Published
2022-08-10
In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases
CVSS Score
4.1
EPSS Score
0.0
Published
2022-07-20
In JetBrains TeamCity before 2022.04.2 build parameter injection was possible
CVSS Score
5.4
EPSS Score
0.0
Published
2022-07-20


Contact Us

Shodan ® - All rights reserved