CVE-2024-27198

9.8CRITICAL

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

发布于: 3/4/2024更新于: 10/24/2025

CISA已知被利用漏洞

JetBrains TeamCity contains an authentication bypass vulnerability that allows an attacker to perform admin actions.

所需操作:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

截止日期:

2024-03-28

已知勒索软件使用

描述

In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible

AI分析AI驱动

受影响产品

jetbrainsteamcity

可用漏洞利用 (1)

参考资料