CVE-2023-42793

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Sep 19, 2023
Updated: Oct 3, 2023
CWE ID 288

Summary

CVE-2023-42793 is a newly disclosed vulnerability affecting JetBrains TeamCity versions prior to 2023.05.4. This issue permits an attacker to bypass authentication, granting unauthorized access to the TeamCity server. Successful exploitation results in Remote Code Execution (RCE) capabilities, allowing attackers to execute arbitrary code and potentially gain control of the affected system. This vulnerability poses a significant threat and requires immediate attention from TeamCity users, who are advised to update their software to the latest version as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share