CVE-2024-56354

In JetBrains TeamCity before 2024.12 password field value were accessible to users with view settings permission
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:jetbrains:teamcity:*:*:*:*:*:*:*:*

History

02 Jan 2025, 18:47

Type Values Removed Values Added
CPE cpe:2.3:a:jetbrains:teamcity:*:*:*:*:*:*:*:*
References () https://www.jetbrains.com/privacy-security/issues-fixed/ - () https://www.jetbrains.com/privacy-security/issues-fixed/ - Vendor Advisory
Summary
  • (es) En JetBrains TeamCity antes de 2024.12, el valor del campo de contraseña era accesible para los usuarios con permiso de visualización de configuraciones
First Time Jetbrains
Jetbrains teamcity

20 Dec 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-20 15:15

Updated : 2025-01-02 18:47


NVD link : CVE-2024-56354

Mitre link : CVE-2024-56354

CVE.ORG link : CVE-2024-56354


JSON object : View

Products Affected

jetbrains

  • teamcity
CWE
CWE-522

Insufficiently Protected Credentials