CVE-2024-27199
HIGH KEV RANSOMWARE NUCLEITeamCity < 2023.11.4 - Authentication Bypass
Title source: nucleiDescription
In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible
Exploits (2)
Nuclei Templates (1)
TeamCity < 2023.11.4 - Authentication Bypass
HIGHVERIFIEDby DhiyaneshDk
Shodan:
http.component:"TeamCity"
Scores
CVSS v3
7.3
EPSS
0.9101
EPSS Percentile
99.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Details
CISA KEV
2026-04-20
VulnCheck KEV
2024-03-05
InTheWild.io
2024-03-04
ENISA EUVD
EUVD-2024-24438
Ransomware Use
Confirmed
CWE
CWE-22
CWE-23
Status
published
Products (2)
jetbrains/teamcity
< 2023.11.4
JetBrains/TeamCity
< 2023.11.4
Published
Mar 04, 2024
KEV Added
Apr 20, 2026
Tracked Since
Feb 18, 2026