CVE-2024-36362

MEDIUM

JetBrains TeamCity <2022.04.7-2024.03.2 - Path Traversal

Title source: llm
STIX 2.1

Description

In JetBrains TeamCity before 2022.04.7, 2022.10.6, 2023.05.6, 2023.11.5, 2024.03.2 path traversal allowing to read files from server was possible

Scores

CVSS v3 6.5
EPSS 0.0001
EPSS Percentile 0.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-22 CWE-23
Status published
Products (1)
jetbrains/teamcity < 2022.04.7
Published May 29, 2024
Tracked Since Feb 18, 2026