GITHUBEXPLOIT 9.8 CRITICAL

Exploit for Authentication Bypass Using an Alternate Path or Channel in Jetbrains Teamcity_D6B398F7-FE57-54AC-9E26-6CF71F1FCAB0

9.8 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

CVE-2024-27198 Lab Description TeamCity provides an admin-only page for token management that is not protected by authentication. This allows an unauthenticated user to generate an access token for the admin user if they can find an ID of an existing...
Visit Original Source

Basic Information

ID D6B398F7-FE57-54AC-9E26-6CF71F1FCAB0
Published May 18, 2026 at 18:11
Modified May 18, 2026 at 18:14

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.