Stored XSS Vulnerabilities in TeamCity Available Updates Page
CVE-2024-35300
3.5LOW
Summary
In JetBrains TeamCity between 2024.03 and 2024.03.1 several stored XSS in the available updates page were possible
Affected Version(s)
TeamCity < 2024.03.1
CVSS V3.1
Score:
3.5
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability Reserved.
Vulnerability published.
Collectors
NVD DatabaseMitre Database