CVE-2019-15039
CRITICALJetBrains TeamCity 2018.2.4 - Remote Code Execution
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-15039. PoCs published by hantwister.
AI-analyzed exploit summary This exploit leverages Java RMI to achieve remote code execution on JetBrains TeamCity 2018.2.4 by forcing the server to execute a malicious Maven POM file from a remote SMB share. The POM file contains a plugin configuration that executes arbitrary commands (e.g., 'calc.exe').
Description
An issue was discovered in JetBrains TeamCity 2018.2.4. It had a possible remote code execution issue. This was fixed in TeamCity 2019.1.
Exploits (1)
This exploit leverages Java RMI to achieve remote code execution on JetBrains TeamCity 2018.2.4 by forcing the server to execute a malicious Maven POM file from a remote SMB share. The POM file contains a plugin configuration that executes arbitrary commands (e.g., 'calc.exe').
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H