First published: Wed May 29 2024(Updated: )
In JetBrains TeamCity before 2024.03.2 users could perform actions that should not be available to them based on their permissions
Credit: cve@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
Jetbrains Teamcity | <2024.03.2 | |
Jetbrains Teamcity | <2024.03.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-36376 is considered a medium-severity vulnerability due to its potential for unauthorized actions based on user permissions.
To fix CVE-2024-36376, update JetBrains TeamCity to version 2024.03.2 or later.
CVE-2024-36376 affects all versions of JetBrains TeamCity prior to 2024.03.2.
CVE-2024-36376 allows users to perform actions that exceed their defined permissions within JetBrains TeamCity.
There are no officially documented workarounds for CVE-2024-36376, so upgrading is recommended.