CVE-2024-28173: Medium severity jetbrains teamcity vulnerability
Published Mar 6, 2024
·Updated
In JetBrains TeamCity between 2023.11 and 2023.11.4 custom build parameters of the "password" type could be disclosed
Affected Software
1 affected component
JetBrains TeamCity>=2023.11<2023.11.4
Event History
Mar 6, 2024
CVE Published
via MITRE·04:52 PM
Data Sourced
via MITRE·04:52 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-28173?
CVE-2024-28173 is classified as a medium severity vulnerability due to the potential disclosure of sensitive information.
2
How can I fix CVE-2024-28173?
To fix CVE-2024-28173, update JetBrains TeamCity to version 2023.11.5 or later.
3
What type of information is disclosed in CVE-2024-28173?
CVE-2024-28173 can disclose custom build parameters of the 'password' type.
4
Which versions of JetBrains TeamCity are affected by CVE-2024-28173?
CVE-2024-28173 affects JetBrains TeamCity versions between 2023.11 and 2023.11.4.
5
Is CVE-2024-28173 specific to certain build parameters?
Yes, CVE-2024-28173 specifically impacts custom build parameters that are of the 'password' type.