CVE-2019-15037

MEDIUM

JetBrains TeamCity 2018.2.4 - Cross-Site Scripting in Settings Pages

Title source: llm
STIX 2.1

Description

An issue was discovered in JetBrains TeamCity 2018.2.4. It had several XSS vulnerabilities on the settings pages. The issues were fixed in TeamCity 2019.1.

References (1)

Core 1
Core References

Scores

CVSS v3 6.1
EPSS 0.0001
EPSS Percentile 0.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-79
Status published
Products (1)
jetbrains/teamcity 2018.2.4
Published Oct 02, 2019
Tracked Since Feb 18, 2026