PT-2024-2531 · Jetbrains · Teamcity

Published

2024-03-27

·

Updated

2024-12-16

·

CVE-2024-31140

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions JetBrains TeamCity versions prior to 2024.03
Description The issue is related to improper input validation in JetBrains TeamCity, a continuous integration and continuous delivery (CI/CD) system. This could allow a remote attacker to gain access and remove arbitrary files from the server by installing tools.
Recommendations For versions prior to 2024.03, update to version 2024.03 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-02516
CVE-2024-31140

Affected Products

Teamcity