HTTP: Directory Traversal Detected on HTTP Request URL

This signature detects attempts to exploit a known flaw in HTTP request URL. A successful attack can result in directory traversal attacks.

Extended Description

In JetBrains TeamCity before 2023.11.4 path traversal allowing to perform limited admin actions was possible

Affected Products

Jetbrains teamcity

Short Name
HTTP:DIR:HTTP-REQ-URL
Severity
Minor
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-2015-0666 CVE-2015-1830 CVE-2015-5531 CVE-2016-0487 CVE-2016-0491 CVE-2016-4523 CVE-2016-4532 CVE-2017-10949 CVE-2017-12559 CVE-2017-5791 CVE-2017-5811 CVE-2017-5812 CVE-2017-5982 CVE-2017-7240 CVE-2018-0296 CVE-2021-41773 CVE-2021-42013 CVE-2023-2825 CVE-2024-27199 Detected Directory HTTP Request Traversal URL on
Release Date
02/25/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3769
False Positive
Frequently
Vendors

Jetbrains

CVSS Score

10.0

7.8

5.0

6.4

6.8

Found a potential security threat?