PT-2021-19591 · Jetbrains · Teamcity

Chris Moore

·

Published

2021-05-07

·

Updated

2021-05-17

·

CVE-2021-31915

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: JetBrains TeamCity versions prior to 2020.2.4
Description: The issue allows for OS command injection, which can lead to remote code execution. This means an attacker could potentially execute system-level commands on a vulnerable system, posing a significant security risk.
Recommendations: For versions prior to 2020.2.4, update to version 2020.2.4 or later to resolve the issue.

Fix

RCE

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-31915

Affected Products

Teamcity