#VU22504 Information disclosure in TeamCity - CVE-2019-18366
Published: November 4, 2019
TeamCity
JetBrains s.r.o.
Description
The vulnerability allows a remote user to gain access to potentially sensitive information.
The vulnerability exists due to improper input validation. A remote authenticated user with the "View build runtime parameters and data" permission can gain unauthorized access to sensitive information on the system, such as secure values.