Tuesday, May 5, 2020

New vulnerability on the NVD: CVE-2019-20768



ServiceNow IT Service Management Kingston through Patch 14-1, London through Patch 7, and Madrid before patch 4 allow stored XSS via crafted sysparm_item_guid and sys_id parameters in an Incident Request to service_catalog.do.

from Pocket https://ift.tt/3cacTBl
via IFTTT

No comments:

Post a Comment