In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
References
Link | Resource |
---|---|
https://www.darkreading.com/cyberattacks-data-breaches/jetbrains-teamcity-mass-exploitation-underway-rogue-accounts-thrive | Press/Media Coverage Third Party Advisory |
https://www.jetbrains.com/privacy-security/issues-fixed/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: JetBrains
Published: 2024-03-04T17:21:39.422Z
Updated: 2024-06-04T17:46:50.489Z
Reserved: 2024-02-21T09:53:25.185Z
Link: CVE-2024-27198
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-03-04T18:15:09.040
Modified: 2024-05-23T17:57:49.653
Link: CVE-2024-27198
JSON object: View
Redhat Information
No data.
CWE