ServiceNow Fixes Flaw That Could Lead to Unauthorized Access to Instances
ID: 689afc54-2fef-5a9b-b335-78648639b91b
STIX ID: report--689afc54-2fef-5a9b-b335-78648639b91b
Feed Name: Security Boulevard
Threat Score
ServiceNow disclosed a now-patched configuration vulnerability affecting its Australia platform release that allowed unauthenticated queries of instance tables for a subset of customers; evidence of successful queries prompted notifications and a June 5 patch. The vendor believes the observed activity was likely attributable to security researchers reporting the issue rather than malicious actors, and is continuing its investigation and considering a CVE.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
