EIP-2026-104101
PRE-CVETeamCity Agent - XML-RPC Command Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104101. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits an unauthenticated RCE vulnerability in TeamCity Agents via XML-RPC on port 9090, leveraging bidirectional communication to execute arbitrary commands. It supports multiple versions of TeamCity (6.0 onwards) and includes version-specific payload construction.
Description
TeamCity Agent - XML-RPC Command Execution (Metasploit)
Exploits (1)
This Metasploit module exploits an unauthenticated RCE vulnerability in TeamCity Agents via XML-RPC on port 9090, leveraging bidirectional communication to execute arbitrary commands. It supports multiple versions of TeamCity (6.0 onwards) and includes version-specific payload construction.