Threat Advisory

JetBrains TeamCity Multiple Authentication Bypass Vulnerabilities

Threat: Vulnerability
Criticality: High
[subscribe_to_unlock_form]

Summary:

A critical vulnerability, identified as CVE-2024-27198, has been discovered in the TeamCity On-Premises CI/CD solution developed by JetBrains. This vulnerability poses a significant threat as it allows remote, unauthenticated attackers to seize control of the server with administrative privileges. The exploit details for CVE-2024-27198 are publicly available, underscoring the urgency for swift action to mitigate potential exploitation and prevent unauthorized access to sensitive systems. In addition to CVE-2024-27198, JetBrains addressed another security issue, denoted as CVE-2024-27199, in the latest version release of TeamCity On-Premises. While this vulnerability is considered less severe, it still warrants attention from administrators due to its potential impact. CVE-2024-27199 enables attackers to manipulate a limited set of system settings without authentication, facilitating the creation of new administrator accounts or generation of administrator access tokens.[/subscribe_to_unlock_form]

Summary:

A critical vulnerability, identified as CVE-2024-27198, has been discovered in the TeamCity On-Premises CI/CD solution developed by JetBrains. This vulnerability poses a significant threat as it allows remote, unauthenticated attackers to seize control of the server with administrative privileges. The exploit details for CVE-2024-27198 are publicly available, underscoring the urgency for swift action to mitigate potential exploitation and prevent unauthorized access to sensitive systems. In addition to CVE-2024-27198, JetBrains addressed another security issue, denoted as CVE-2024-27199, in the latest version release of TeamCity On-Premises. While this vulnerability is considered less severe, it still warrants attention from administrators due to its potential impact. CVE-2024-27199 enables attackers to manipulate a limited set of system settings without authentication, facilitating the creation of new administrator accounts or generation of administrator access tokens.[emaillocker id="1283"]

  • CVE-2024-27198 (critical, 9.8 severity): an authentication bypass vulnerability in the web component of TeamCity generated by an alternative path issue.
  • CVE-2024-27199 (high, 7.3 severity): a path traversal vulnerability in the web component of TeamCity that allows bypassing authentication.

Recommendations:

  • We strongly recommend you update TeamCity 2023.11.4 version.

References:

The following reports contain further technical details:

https://www.bleepingcomputer.com/news/security/exploit-available-for-new-critical-teamcity-auth-bypass-bug-patch-now/

[/emaillocker]
crossmenu