Vulnerabilities
Vulnerable Software
Jetbrains:  >> Teamcity  >> 7.0  Security Vulnerabilities
In JetBrains TeamCity before 2024.12.2 several DOM-based XSS were possible on the Code Inspection Report tab
CVSS Score
4.6
EPSS Score
0.028
Published
2025-02-11
In JetBrains TeamCity before 2024.12.1 improper access control allowed to see Projects’ names in the agent pool
CVSS Score
4.3
EPSS Score
0.0
Published
2025-01-21
In JetBrains TeamCity before 2024.12.1 reflected XSS was possible on the Vault Connection page
CVSS Score
4.6
EPSS Score
0.015
Published
2025-01-21
In JetBrains TeamCity before 2024.12 backup file exposed user credentials and session cookies
CVSS Score
5.5
EPSS Score
0.0
Published
2024-12-20
In JetBrains TeamCity before 2024.12 password field value were accessible to users with view settings permission
CVSS Score
5.5
EPSS Score
0.0
Published
2024-12-20
In JetBrains TeamCity before 2024.12 missing Content-Type header in RemoteBuildLogController response could lead to XSS
CVSS Score
4.6
EPSS Score
0.147
Published
2024-12-20
In JetBrains TeamCity before 2024.12 insecure XMLParser configuration could lead to potential XXE attack
CVSS Score
5.9
EPSS Score
0.0
Published
2024-12-20
In JetBrains TeamCity before 2024.12 improper access control allowed unauthorized users to modify build logs
CVSS Score
5.3
EPSS Score
0.0
Published
2024-12-20
In JetBrains TeamCity before 2024.12 build credentials allowed unauthorized viewing of projects
CVSS Score
4.3
EPSS Score
0.0
Published
2024-12-20
In JetBrains TeamCity before 2024.12 access tokens were not revoked after removing user roles
CVSS Score
6.3
EPSS Score
0.001
Published
2024-12-20


Contact Us

Shodan ® - All rights reserved