Skip to main content
CyberConfirmedHighDevelopingFeatured
8.3

Three critical unauthenticated RCE vulnerabilities identified in ServiceNow platforms

ServiceNow has disclosed three vulnerabilities with a maximum CVSS score of 10.0, allowing for unauthenticated arbitrary code execution, privilege escalation, and SQL injection. While the vendor reports no evidence of active exploitation, the severity and lack of authentication requirements present a high risk for enterprise infrastructure.

The Hacker Newsabout 11 hours agoengCredibility 62%View source

Score Breakdown

Mosaic Score8.3
Confidence0.9
Significance0.8
Source credibility0.6
Source

Related signals

8 found