First published: Tue May 11 2021(Updated: )
Information disclosure in the TeamCity plugin for IntelliJ before 2020.2.2.85899 was possible because a local temporary file had Insecure Permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Teamcity | <2020.2.2.85899 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-26309 has been rated as having moderate severity due to the potential for information disclosure.
To fix CVE-2021-26309, upgrade to JetBrains TeamCity version 2020.2.2.85899 or later.
CVE-2021-26309 addresses information disclosure caused by insecure permissions on a local temporary file in the TeamCity plugin for IntelliJ.
Versions of JetBrains TeamCity for IntelliJ prior to 2020.2.2.85899 are affected by CVE-2021-26309.
No, CVE-2021-26309 is not a network-related vulnerability; it is related to local file permissions.