Description
The TeamCity has an authentication bypass vulnerability. An attacker can bypass the authentication with a specially crafted HTTP request and get full access to the system.
Remediation
Upgrade to the latest version of TeamCity
References
Related Vulnerabilities
Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2016-9585)
Play Framework Improper Restriction of XML External Entity Reference Vulnerability (CVE-2014-3630)
PHP Improper Input Validation Vulnerability (CVE-2007-0908)
MySQL CVE-2017-10279 Vulnerability (CVE-2017-10279)
TYPO3 Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2010-3663)