Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2024-27198
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
使用候选路径或通道进行的认证绕过
Source: NVD (National Vulnerability Database)
Vulnerability Title
JetBrains TeamCity 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
JetBrains TeamCity是捷克JetBrains公司的一套分布式构建管理和持续集成工具。该工具提供持续单元测试、代码质量分析和构建问题分析报告等功能。 JetBrains TeamCity 2023.11.4之前版本存在安全漏洞,该漏洞源于存在身份验证绕过漏洞。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
JetBrainsTeamCity 0 ~ 2023.11.4 -
II. Public POCs for CVE-2024-27198
#POC DescriptionSource LinkShenlong Link
1Nonehttps://github.com/tucommenceapousser/CVE-2024-27198POC Details
2Exploit for CVE-2024-27198 - TeamCity Serverhttps://github.com/yoryio/CVE-2024-27198POC Details
3CVE-2024-27198 - Authentication Bypass Using an Alternate Path vulnerability in JetBrains TeamCity Serverhttps://github.com/labesterOct/CVE-2024-27198POC Details
4Proof of Concept for Authentication Bypass in JetBrains TeamCity Pre-2023.11.4https://github.com/Chocapikk/CVE-2024-27198POC Details
5CVE-2024-27198 & CVE-2024-27199 Authentication Bypass --> RCE in JetBrains TeamCity Pre-2023.11.4https://github.com/W01fh4cker/CVE-2024-27198-RCEPOC Details
6A PoC for CVE-2024-27198 written in golanghttps://github.com/rampantspark/CVE-2024-27198POC Details
7Nonehttps://github.com/passwa11/CVE-2024-27198-RCEPOC Details
8Nonehttps://github.com/CharonDefalt/CVE-2024-27198-RCEPOC Details
9A PoC exploit for CVE-2024-27198 - JetBrains TeamCity Authentication Bypasshttps://github.com/K3ysTr0K3R/CVE-2024-27198-EXPLOITPOC Details
10Em fevereiro de 2024, foi identificado duas novas vulnerabilidades que afetam o servidor JetBrains TeamCity (CVE-2024-27198 e CVE-2024-27199)https://github.com/Shimon03/Explora-o-RCE-n-o-autenticado-JetBrains-TeamCity-CVE-2024-27198-POC Details
11CVE-2024-27198 & CVE-2024-27199 PoC - RCE, Admin Account Creation, Enum Users, Server Informationhttps://github.com/Stuub/RCity-CVE-2024-27198POC Details
12Nonehttps://github.com/HPT-Intern-Task-Submission/CVE-2024-27198POC Details
13CVE-2024-27198 & CVE-2024-27199 PoC - RCE, Admin Account Creation, Enum Users, Server Information #RCE #python3https://github.com/Pypi-Project/RCity-CVE-2024-27198POC Details
14PoC about CVE-2024-27198https://github.com/jrbH4CK/CVE-2024-27198POC Details
15is a PoC tool that targets a vulnerability in the TeamCity server (CVE-2024-27198)https://github.com/geniuszlyy/CVE-2024-27198POC Details
16a proof of concept of the CVE-2024-27198 which infect jetbrains teamCityhttps://github.com/Cythonic1/CVE-2024-27198_POCPOC Details
17is a PoC tool that targets a vulnerability in the TeamCity server (CVE-2024-27198)https://github.com/geniuszly/CVE-2024-27198POC Details
18In this project, I exploited the CVE-2024-27198-RCE vulnerability to perform a remote code execution (RCE) attack on a vulnerable TeamCity server.https://github.com/ArtemCyberLab/Project-Exploiting-CVE-2024-27198-RCE-VulnerabilityPOC Details
19In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-27198.yamlPOC Details
20Nonehttps://github.com/Threekiii/Awesome-POC/blob/master/Web%E5%BA%94%E7%94%A8%E6%BC%8F%E6%B4%9E/JetBrains%20TeamCity%20%E8%BA%AB%E4%BB%BD%E9%AA%8C%E8%AF%81%E7%BB%95%E8%BF%87%E6%BC%8F%E6%B4%9E%20%20CVE-2024-27198.mdPOC Details
21proof-of-concept mass scanner targeting JetBrains TeamCity instances affected by CVE-2024-27198https://github.com/EynaExp/CVE-2024-27198-POCPOC Details
22https://github.com/vulhub/vulhub/blob/master/teamcity/CVE-2024-27198/README.mdPOC Details
23Nonehttps://github.com/Threekiii/Awesome-POC/blob/master/Web%E5%BA%94%E7%94%A8%E6%BC%8F%E6%B4%9E/JetBrains%20TeamCity%20%E8%BA%AB%E4%BB%BD%E9%AA%8C%E8%AF%81%E7%BB%95%E8%BF%87%E6%BC%8F%E6%B4%9E%20CVE-2024-27198.mdPOC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2024-27198
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2024-27198

No comments yet


Leave a comment