Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  >> 2.0  Security Vulnerabilities
In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases
CVSS Score
4.1
EPSS Score
0.0
Published
2022-07-20
In JetBrains TeamCity before 2022.04.2 build parameter injection was possible
CVSS Score
5.4
EPSS Score
0.0
Published
2022-07-20
In JetBrains TeamCity before 2022.04 reflected XSS on the Build Chain Status page was possible
CVSS Score
4.6
EPSS Score
0.0
Published
2022-05-12
In JetBrains TeamCity before 2022.04 leak of secrets in TeamCity agent logs was possible
CVSS Score
4.4
EPSS Score
0.0
Published
2022-05-12
In JetBrains TeamCity before 2022.04 potential XSS via Referrer header was possible
CVSS Score
3.7
EPSS Score
0.0
Published
2022-05-12
JetBrains TeamCity before 2021.2.2 was vulnerable to reflected XSS.
CVSS Score
6.1
EPSS Score
0.0
Published
2022-02-25
JetBrains TeamCity before 2021.2.3 was vulnerable to OS command injection in the Agent Push feature configuration.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-02-25
In JetBrains TeamCity before 2021.2.3, environment variables of the "password" type could be logged in some cases.
CVSS Score
7.5
EPSS Score
0.0
Published
2022-02-25
In JetBrains TeamCity before 2021.2, a logout action didn't remove a Remember Me cookie.
CVSS Score
5.3
EPSS Score
0.0
Published
2022-02-25
In JetBrains TeamCity before 2021.2, blind SSRF via an XML-RPC call was possible.
CVSS Score
6.5
EPSS Score
0.0
Published
2022-02-25


Contact Us

Shodan ® - All rights reserved