CVE-2024-27198

9.8CRITICAL

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

公開日: 3/4/2024更新日: 10/24/2025

CISA既知の悪用された脆弱性

JetBrains TeamCity contains an authentication bypass vulnerability that allows an attacker to perform admin actions.

必要な対応:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

期限:

2024-03-28

既知のランサムウェア使用

説明

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

AI分析AIによる分析

影響を受ける製品

jetbrainsteamcity

利用可能なエクスプロイト (1)

参照