Vulnerability detail
Enriched intelligence for a single CVE
Critical
CVE-2024-4879
PUBLISHEDJelly Template Injection Vulnerability in ServiceNow UI Macros
- Vendor
- ServiceNow
- Product
- Now Platform
- Published
- Jul 10, 2024
- EPSS
- —
Description
ServiceNow has addressed an input validation vulnerability that was identified in Vancouver and Washington DC Now Platform releases. This vulnerability could enable an unauthenticated user to remotely execute code within the context of the Now Platform. ServiceNow applied an update to hosted instances, and ServiceNow released the update to our partners and self-hosted customers. Listed below are the patches and hot fixes that address the vulnerability. If you have not done so already, we recommend applying security patches relevant to your instance as soon as possible.
CVSS scores
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
SSVC decision points
- Exploitation
- active
- Automatable
- Yes
- Technical impact
- total
Known exploited vulnerability sources
Catalogues that list this CVE as a known exploited vulnerability.
| Source | Added |
|---|---|
| CISA | Jul 29, 2024 |
Scanner integrations
| Scanner | Reference | Detected |
|---|---|---|
| Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-4879.yaml | Apr 25, 2025 |
| Nessus | https://www.tenable.com/plugins/nessus/214850 | Jan 31, 2025 |
Potential proof of concepts
These PoCs are unverified and could contain malware. Use at your own risk.
github · Created 2024-08-27 03:43:28 UTC · 4 stars
Jelly Template Injection Vulnerability in ServiceNow | POC CVE-2024-4879
github · Created 2024-07-28 06:51:33 UTC · 4 stars
CVE-2024-4879 & CVE-2024-5217 ServiceNow RCE Scanning Using Nuclei & Shodan Dork to find it.
github · Created 2024-07-16 04:03:28 UTC · 1 stars
Exploit for CVE-2024-4879 affecting Vancouver, Washington DC Now and Utah Platform releases
github · Created 2024-07-12 21:43:48 UTC · 4 stars
github · Created 2024-07-12 13:02:47 UTC · 10 stars
Bulk scanning tool for ServiceNow CVE-2024-4879 vulnerability
github · Created 2024-07-12 10:32:37 UTC · 23 stars
CVE-2024-4879 - Jelly Template Injection Vulnerability in ServiceNow
Timeline
-
CVE ID Reserved
-
CVE Published to Public
-
Proof of Concept Exploit Available
-
Added to KEVIntel
-
Detected by Nessus
-
Detected by Nuclei