CVE-2024-41829

LOW

Jetbrains Teamcity < 2024.07 - Authentication Bypass

Title source: rule
STIX 2.1

Description

In JetBrains TeamCity before 2024.07 an OAuth code for JetBrains Space could be stolen via Space Application connection

Scores

CVSS v3 3.5
EPSS 0.0000
EPSS Percentile 0.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-287 CWE-303
Status published
Products (1)
jetbrains/teamcity < 2024.07
Published Jul 22, 2024
Tracked Since Feb 18, 2026