Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  >> 2019.1  Security Vulnerabilities
In JetBrains TeamCity before 2020.2.3, insufficient checks of the redirect_uri were made during GitHub SSO token exchange.
CVSS Score
7.5
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.4 on Windows, arbitrary code execution on TeamCity Server was possible.
CVSS Score
9.8
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.4, OS command injection leading to remote code execution was possible.
CVSS Score
9.8
EPSS Score
0.002
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, permission checks for changing TeamCity plugins were implemented improperly.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.3, stored XSS was possible on several pages.
CVSS Score
5.4
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.3, argument injection leading to remote code execution was possible.
CVSS Score
9.8
EPSS Score
0.001
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, stored XSS on a tests page was possible.
CVSS Score
5.4
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, XSS was potentially possible on the test history page.
CVSS Score
6.1
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, audit logs were not sufficient when an administrator uploaded a file.
CVSS Score
2.7
EPSS Score
0.0
Published
2021-05-11
In JetBrains TeamCity before 2020.2.2, TeamCity server DoS was possible via server integration.
CVSS Score
5.3
EPSS Score
0.0
Published
2021-02-03


Contact Us

Shodan ® - All rights reserved