CVE-2023-38067

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jul 12, 2023
Updated: Jul 20, 2023
CWE ID 532

Summary

CVE-2023-38067 is a vulnerability affecting JetBrains TeamCity versions prior to 2023.05.1. This issue allows build parameters of the "password" type to be written to the agent log, posing a security risk. An attacker gaining access to the log could potentially obtain sensitive password information. This vulnerability could lead to unauthorized access or data breaches, making it important for affected users to update their TeamCity installations as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share