Page 12 of 212 results (0.005 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

03 Nov 2022 — In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values in the MetaRunner settings En la versión JetBrains TeamCity anterior a 2022.10, Project Viewer podía ver valores seguros codificados en la configuración de MetaRunner. • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-538: Insertion of Sensitive Information into Externally-Accessible File or Directory •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

03 Nov 2022 — In JetBrains TeamCity version before 2022.10, Password parameters could be exposed in the build log if they contained special characters En la versión JetBrains TeamCity anterior a 2022.10, los parámetros de contraseña podían quedar expuestos en el registro de compilación si contenían caracteres especiales. • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-532: Insertion of Sensitive Information into Log File •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

23 Sep 2022 — In JetBrains TeamCity before 2022.04.4 environmental variables of "password" type could be logged when using custom Perforce executable En JetBrains TeamCity versiones anteriores a 2022.04.4, las variables de entorno de tipo "password" podían registrarse cuando era usado un ejecutable Perforce personalizado • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-532: Insertion of Sensitive Information into Log File •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

10 Aug 2022 — In JetBrains TeamCity before 2022.04.3 the private SSH key could be written to the server log in some cases En JetBrains TeamCity versiones anteriores a 2022.04.3, la clave SSH privada podría escribirse en el registro del servidor en algunos casos • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-532: Insertion of Sensitive Information into Log File •

CVSS: 9.0EPSS: 0%CPEs: 1EXPL: 0

20 Jul 2022 — In JetBrains TeamCity before 2022.04.2 build parameter injection was possible En JetBrains TeamCity versiones anteriores a 2022.04.2, era posible la inyección de parámetros de construcción • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') •

CVSS: 6.8EPSS: 0%CPEs: 1EXPL: 0

20 Jul 2022 — In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases En JetBrains TeamCity versiones anteriores a 2022.04.2, la clave privada SSH podía ser escrita en el registro de construcción en algunos casos • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-532: Insertion of Sensitive Information into Log File •

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

12 May 2022 — In JetBrains TeamCity before 2022.04 potential XSS via Referrer header was possible En JetBrains TeamCity versiones anteriores a 2022.04, era posible un potencial ataque de tipo XSS por medio del encabezado Referrer • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 4.9EPSS: 0%CPEs: 1EXPL: 0

12 May 2022 — In JetBrains TeamCity before 2022.04 leak of secrets in TeamCity agent logs was possible En JetBrains TeamCity versiones anteriores a 2022.04, era posible una filtración de secretos en los registros del agente de TeamCity • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-532: Insertion of Sensitive Information into Log File •

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

12 May 2022 — In JetBrains TeamCity before 2022.04 reflected XSS on the Build Chain Status page was possible En JetBrains TeamCity versiones anteriores a 2022.04, era posible un ataque de tipo XSS reflejado en la página Build Chain Status • https://www.jetbrains.com/privacy-security/issues-fixed • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

25 Feb 2022 — JetBrains TeamCity before 2021.2.2 was vulnerable to reflected XSS. JetBrains TeamCity antes de 2021.2.2, era vulnerable a un ataque de tipo XSS reflejado. • https://blog.jetbrains.com • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •