Show filters
211 Total Results
Displaying 101-110 of 211
Sort by:
Attacker Value
Unknown

CVE-2022-48427

Disclosure Date: March 27, 2023 (last updated February 24, 2025)
In JetBrains TeamCity before 2022.10.3 stored XSS on “Pending changes” and “Changes” tabs was possible
Attacker Value
Unknown

CVE-2022-48426

Disclosure Date: March 27, 2023 (last updated February 24, 2025)
In JetBrains TeamCity before 2022.10.3 stored XSS in Perforce connection settings was possible
Attacker Value
Unknown

CVE-2022-48344

Disclosure Date: February 23, 2023 (last updated February 24, 2025)
In JetBrains TeamCity before 2022.10.2 there was an XSS vulnerability in the group creation process.
Attacker Value
Unknown

CVE-2022-48343

Disclosure Date: February 23, 2023 (last updated February 24, 2025)
In JetBrains TeamCity before 2022.10.2 there was an XSS vulnerability in the user creation process.
Attacker Value
Unknown

CVE-2022-48342

Disclosure Date: February 23, 2023 (last updated February 24, 2025)
In JetBrains TeamCity before 2022.10.2 jVMTI was enabled by default on agents.
Attacker Value
Unknown

CVE-2022-46831

Disclosure Date: December 08, 2022 (last updated February 24, 2025)
In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.
Attacker Value
Unknown

CVE-2022-46830

Disclosure Date: December 08, 2022 (last updated February 24, 2025)
In JetBrains TeamCity between 2022.10 and 2022.10.1 a custom STS endpoint allowed internal port scanning.
Attacker Value
Unknown

CVE-2022-44646

Disclosure Date: November 03, 2022 (last updated February 24, 2025)
In JetBrains TeamCity version before 2022.10, no audit items were added upon editing a user's settings
Attacker Value
Unknown

CVE-2022-44623

Disclosure Date: November 03, 2022 (last updated February 24, 2025)
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings
Attacker Value
Unknown

CVE-2022-44624

Disclosure Date: November 03, 2022 (last updated February 24, 2025)
In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters