CVE-2025-68164: Low severity JetBrains TeamCity vulnerability
Published Dec 16, 2025
·Updated
In JetBrains TeamCity before 2025.11 port enumeration was possible via the Perforce connection test
Affected Software
2 affected components
JetBrains TeamCity<2025.11
JetBrains TeamCity<2025.11
Event History
Dec 16, 2025
CVE Published
via MITRE·03:27 PM
Data Sourced
via MITRE·03:27 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-68164?
CVE-2025-68164 has a moderate severity rating due to its potential for port enumeration via the Perforce connection test.
2
How do I fix CVE-2025-68164?
To fix CVE-2025-68164, upgrade JetBrains TeamCity to version 2025.11 or later.
3
What versions of JetBrains TeamCity are affected by CVE-2025-68164?
All versions of JetBrains TeamCity prior to 2025.11 are affected by CVE-2025-68164.
4
What type of attack does CVE-2025-68164 enable?
CVE-2025-68164 enables attackers to perform port enumeration through the Perforce connection test.
5
Does CVE-2025-68164 require authentication to exploit?
CVE-2025-68164 can potentially be exploited without authentication, making it a concern for exposed services.