KEVIntel
7.3
CVSS
High

CVE-2024-27199

PUBLISHED

In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible

Exploited in the wild Used in malware Remote Low complexity No user interaction
Vendor
JetBrains
Product
TeamCity
Published
Mar 04, 2024
EPSS
90.9% · 100% pctl

Description

In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible

windows cisa malware nuclei_scanner

CVSS scores

CVSS v3.1 7.3 High

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Exploitation status

Exploited in the wild

Recorded 2025-04-23 00:00:00 UTC · Source

Used in malware

Recorded 2026-06-02 14:01:56 UTC · Source

SSVC decision points

Exploitation
active
Automatable
Yes
Technical impact
partial

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
CISA Jun 02, 2026
The Shadowserver (via CIRCL) Apr 24, 2025

Scanner integrations

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel

  • Detected by Nuclei

  • Added to KEVIntel

  • Exploit Used in Malware