Medium severity5.4NVD Advisory· Published Mar 15, 2018· Updated Jun 17, 2026
CVE-2018-8720
CVE-2018-8720
Description
ServiceNow ITSM 2016-06-02 has XSS via the First Name or Last Name field of My Profile (aka navpage.do), or the Search bar of My Portal (aka search_results.do).
Affected products
2- cpe:2.3:a:servicenow:it_service_management:-:*:*:*:*:*:*:*
- Range: = 2016-06-02
Patches
Vulnerability mechanics
References
1- packetstormsecurity.com/files/137427/ServiceNow-ITSM-Cross-Site-Scripting.htmlnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.