Show filters
211 Total Results
Displaying 61-70 of 211
Sort by:
Attacker Value
Unknown

CVE-2024-31138

Disclosure Date: March 28, 2024 (last updated April 09, 2024)
In JetBrains TeamCity before 2024.03 xSS was possible via Agent Distribution settings
Attacker Value
Unknown

CVE-2024-31137

Disclosure Date: March 28, 2024 (last updated April 09, 2024)
In JetBrains TeamCity before 2024.03 reflected XSS was possible via Space connection configuration
Attacker Value
Unknown

CVE-2024-31136

Disclosure Date: March 28, 2024 (last updated December 18, 2024)
In JetBrains TeamCity before 2024.03 2FA could be bypassed by providing a special URL parameter
Attacker Value
Unknown

CVE-2024-31135

Disclosure Date: March 28, 2024 (last updated April 09, 2024)
In JetBrains TeamCity before 2024.03 open redirect was possible on the login page
Attacker Value
Unknown

CVE-2024-31134

Disclosure Date: March 28, 2024 (last updated December 18, 2024)
In JetBrains TeamCity before 2024.03 authenticated users without administrative permissions could register other users when self-registration was disabled
Attacker Value
Unknown

CVE-2024-29880

Disclosure Date: March 21, 2024 (last updated December 18, 2024)
In JetBrains TeamCity before 2023.11 users with access to the agent machine might obtain permissions of the user running the agent process
Attacker Value
Unknown

CVE-2024-28174

Disclosure Date: March 06, 2024 (last updated December 18, 2024)
In JetBrains TeamCity before 2023.11.4 presigned URL generation requests in S3 Artifact Storage plugin were authorized improperly
Attacker Value
Unknown

CVE-2024-28173

Disclosure Date: March 06, 2024 (last updated December 18, 2024)
In JetBrains TeamCity between 2023.11 and 2023.11.4 custom build parameters of the "password" type could be disclosed
Attacker Value
Unknown

CVE-2024-24938

Disclosure Date: February 06, 2024 (last updated February 09, 2024)
In JetBrains TeamCity before 2023.11.2 limited directory traversal was possible in the Kotlin DSL documentation
Attacker Value
Unknown

CVE-2024-24937

Disclosure Date: February 06, 2024 (last updated February 09, 2024)
In JetBrains TeamCity before 2023.11.2 stored XSS via agent distribution was possible