CVE-2024-27198
KEV RANSOMWARECRITICAL 9.8EPSS 99.9%
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 99.94% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2024-03-07, used in ransomware campaigns
- Nuclei
- critical · CWE-288
- Published
- 2024-03-04
- Updated
- 2025-10-21
Proof-of-concept exploits (23)
- https://www.darkreading.com/cyberattacks-data-breaches/jetbrains-teamcity-mass-exploitati…
- ArtemCyberLab/Project-Exploiting-CVE-2024-27198-RCE-Vulnerability0★ · 2025-01-22
- CharonDefalt/CVE-2024-27198-RCE1★ · 2024-03-09
- Chocapikk/CVE-2024-2719834★ · 2024-03-05
- Cythonic1/CVE-2024-27198_POC0★ · 2024-10-21
- Donata64/tc_test010★ · 2024-03-24
- HPT-Intern-Task-Submission/CVE-2024-271980★ · 2024-07-20
- K3ysTr0K3R/CVE-2024-27198-EXPLOIT8★ · 2024-03-09
- Shimon03/Explora-o-RCE-n-o-autenticado-JetBrains-TeamCity-CVE-2024-27198-0★ · 2024-04-02
- Stuub/RCity-CVE-2024-2719835★ · 2024-07-19
- W01fh4cker/CVE-2024-27198-RCE154★ · 2024-03-11
- chebuya/CVE-2024-30851-jasmin-ransomware-path-traversal-poc21★ · 2024-04-09
- dkhacks/CVE_2024_271980★ · 2024-09-03
- geniuszly/CVE-2024-271983★ · 2024-10-09
- geniuszlyy/CVE-2024-271983★ · 2024-10-09
- jrbH4CK/CVE-2024-271980★ · 2024-08-16
- passwa11/CVE-2024-27198-RCE3★ · 2024-03-08
- rampantspark/CVE-2024-271980★ · 2024-03-10
- yoryio/CVE-2024-2719837★ · 2024-12-19
- EynaExp/CVE-2024-27198-POC
- kxom9ks/CVE-2024-27198-TeamCity
- chengbochuan3/CVE-CICD-Security
- hajarek24/CityCVE