ServiceNow Vulnerabilities: CVE-2024-4789 and CVE-2024-5217 | UpGuard
ID: 4e471ba7-a4f2-5b3f-af24-267e709299ce
STIX ID: report--4e471ba7-a4f2-5b3f-af24-267e709299ce
Feed Name: UpGuard Blog
Threat Score
In late July 2024 two critical ServiceNow vulnerabilities (CVE-2024-4789 and CVE-2024-5217) were highlighted — both enable unauthenticated remote code execution with high CVSS scores and have been added to CISA's Known Exploited Vulnerabilities list; the report describes their technical weaknesses, the severe impact (possible server takeover and data breaches), and recommends immediate patching, version updates, and third‑party/vendor monitoring using UpGuard.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
