JetBrains TeamCity Authentication Bypass (CVE-2024-27198)

critical Nessus Plugin ID 191547

Version 1.7

Mar 19, 2024, 6:40 PM

  • Logic Changes (Improving logging to reduce disk space usage)

Plugin Feed: 202403191840

Version 1.6

Mar 14, 2024, 3:54 PM

  • Exploit attributes ("Exploit framework metasploit" set to "True")

Plugin Feed: 202403141554

Version 1.5

Mar 12, 2024, 7:00 PM

  • Exploit attributes ("Exploit framework core" set to "True")

Plugin Feed: 202403121900

Version 1.4

Mar 8, 2024, 6:26 PM

  • IAVM reference
  • STIG Severity (set to "I")

Plugin Feed: 202403081826

Version 1.3

Mar 8, 2024, 12:52 AM

  • CISA reference
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")

Plugin Feed: 202403080052

Version 1.2

Mar 7, 2024, 12:54 PM

  • Logic Changes (added logging for http requests, removed redundant includes, better reporting)

Plugin Feed: 202403071254

Version 1.1

Mar 6, 2024, 4:37 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:POC/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:P/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True". "Exploitability ease" set to "Exploits are available")

Plugin Feed: 202403061637

Version 1.1

Mar 7, 2024, 10:29 AM

  • Logic Changes (added logging for http requests, removed redundant includes, better reporting)

Plugin Feed: 202403071029

Version 1.0

Mar 5, 2024, 5:50 PM

  • New

Plugin Feed: 202403051750

* Changelogs are generally available for changes made after Nov 1, 2022