CVE-2023-34228: Medium severity JetBrains TeamCity vulnerability
Published May 31, 2023
·Updated
In JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account actions
Affected Software
1 affected component
JetBrains TeamCity<2023.05
Event History
May 31, 2023
CVE Published
via MITRE·01:03 PM
Data Sourced
via MITRE·01:03 PM
DescriptionSeverityWeakness
Data Sourced
02:15 PM
DescriptionWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-34228.
2
What is the title of the vulnerability?
The title of the vulnerability is 'In JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account actions.'
3
What is the severity of CVE-2023-34228?
The severity of CVE-2023-34228 is medium with a CVSS score of 6.5.
4
What software is affected by CVE-2023-34228?
JetBrains TeamCity versions before 2023.05 are affected by CVE-2023-34228.
5
Is there a fix available for CVE-2023-34228?
Yes, a fix is available for CVE-2023-34228. It is recommended to upgrade to version 2023.05 or later of JetBrains TeamCity.