Tech

Hackers are targeting unpatched ServiceNow instances that exploit 3 separate year-old vulnerabilities

Share
Share


  • ServiceNow fixed three flaws in July 2024, but researchers from GreyNoise saw a resurgence of abuse
  • The flaws can be used for full database access
  • Users should patch immediately to make sure they are protected

There has been a “notable resurgence” in the abuse of three concerning ServiceNow security vulnerabilities, experts are warning.

In May 2024, security researchers from Assetnote found vulnerabilities, tracked as CVE-2024-4879, CVE-2024-5178, and CVE-2024-5217, which ServiceNow patched in July of the same year.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *