Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r49c-pqj4-g6ff

Опубликовано: 08 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.

In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.

EPSS

Процентиль: 0%
0.00007
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-1188

Связанные уязвимости

CVSS3: 6.6
nvd
около 3 лет назад

In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.

EPSS

Процентиль: 0%
0.00007
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-1188