logo

PatchNow: ServiceNow Critical RCE Bugs Under Active Exploit

ID: 48bfaf4e-ae45-5601-8cb5-5aba0f2edc37

STIX ID: report--48bfaf4e-ae45-5601-8cb5-5aba0f2edc37

Feed Name: Dark Reading

Threat Score
88/100

Date Published: 2024-07-29

Date Updated: 2026-04-21

Author: Jai Vijayan, Contributing Writer

...
...

Researchers observed active exploitation of two critical ServiceNow input-validation RCE vulnerabilities (CVE-2024-4879 and CVE-2024-5217) that enable full database/server access; a threat actor on BreachForums claims to be selling harvested email addresses and hashes from over 105 instances, a public PoC was published, CISA added the bugs to its known exploited vulnerabilities catalog, and organizations are urged to apply hotfixes or mitigate access until patched.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.