First published: Wed May 31 2023(Updated: )
In JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account actions
Credit: security@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Teamcity | <2023.05 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-34228.
The title of the vulnerability is 'In JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account actions.'
The severity of CVE-2023-34228 is medium with a CVSS score of 6.5.
JetBrains TeamCity versions before 2023.05 are affected by CVE-2023-34228.
Yes, a fix is available for CVE-2023-34228. It is recommended to upgrade to version 2023.05 or later of JetBrains TeamCity.