A cross-site scripting (XSS) vulnerability in Employee Service Center (esc) and Service Portal (sp) in ServiceNow Quebec, Rome, and San Diego allows remote attackers to inject arbitrary web script via the Standard Ticket Conversations widget.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-01-12T00:00:00

Updated: 2024-08-03T13:10:41.436Z

Reserved: 2022-10-10T00:00:00

Link: CVE-2022-42704

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-01-13T00:15:09.563

Modified: 2023-01-23T18:36:41.117

Link: CVE-2022-42704

cve-icon Redhat

No data.