Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ServiceNow IT Service Management Kingston through Patch 14-1, London through Patch 7, and Madrid before patch 4 allow stored XSS via crafted sysparm_item_guid and sys_id parameters in an Incident Request to service_catalog.do.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ServiceNow IT Service Management 跨站脚本漏洞
Vulnerability Description
ServiceNow IT Service Management(ITSM)是美国ServiceNow公司的一套IT服务管理工具。该工具提供事件管理、问题管理、变更和发布管理等功能。 ServiceNow IT Service Management Kingston Patch 14-1及之前版本、London Patch 7及之前版本和Madrid patch 4之前版本中存在跨站脚本漏洞。该漏洞源于网络系统或产品在内存上执行操作时,未正确验证数据边界,导致向关联的其他内存位置上执行了错误的读写操作。攻
CVSS Information
N/A
Vulnerability Type
N/A