S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Mar 4, 2024

CVE-2022-39048 Scanner

CVE-2022-39048 scanner - Cross-site Scripting vulnerability in ServiceNow

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.5k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-39048
6.1
CVSSmedium
Exploitable remotely over the internet · no authentication required · user interaction needed.

A XSS vulnerability was identified in the ServiceNow UI page assessment_redirect. To exploit this vulnerability, an attacker would need to persuade an authenticated user to click a maliciously crafted URL. Successful exploitation potentially could be used to conduct various client-side attacks, including, but not limited to, phishing, redirection, theft of CSRF tokens, and use of an authenticated user's browser or session to attack other systems.

Attack Vector
Network
Privileges Req.
None
User Interaction
Required
Affected
Now Platformby Servicenow
AFFECTED< Patch 1aSAFE ✓≥ Patch 1a
Updated Aug 22, 2026View on NVD →
Detail

ServiceNow is a cloud-based platform that provides software as a service (SaaS) for technical management support. The platform specializes in IT services management (ITSM), IT operations management (ITOM), and IT business management (ITBM), helping organizations automate and streamline their IT services. ServiceNow is widely used in various industries to manage service requests, incidents, problems, and changes. The platform's versatility and extensive integration capabilities make it a central tool for IT departments seeking to optimize their processes and improve service delivery.

The Cross-site Scripting (XSS) vulnerability discovered in ServiceNow's Quebec version occurs within the UI page assessment_redirect. This vulnerability allows attackers to craft URLs that, when clicked by an authenticated user, execute arbitrary script code in the victim's browser. This could lead to various security breaches, including phishing attempts, session hijackings, and unauthorized actions on the system using the victim's credentials.

To exploit this vulnerability, an attacker would need to persuade a user already authenticated in ServiceNow to click on a specially crafted link. This link would trigger the XSS vulnerability in the assessment_redirect page by injecting malicious script into the sysparm_survey_url parameter. The vulnerability demonstrates a lack of proper input sanitization and output encoding of URL parameters, allowing attackers to execute scripts in the context of the user's session.

Successful exploitation could lead to unauthorized actions being performed on the ServiceNow platform under the guise of the victim's session. This includes accessing sensitive information, modifying data, or performing privileged operations without authorization. Additionally, it could serve as a stepping stone for further attacks, both within the ServiceNow environment and against other systems accessible through the victim's browser.

At S4E, we provide advanced scanning technologies and expertise to detect vulnerabilities like XSS in ServiceNow and other platforms. Joining our service offers access to comprehensive assessments, actionable remediation advice, and continuous monitoring capabilities. This proactive approach to cybersecurity helps protect your digital assets, ensuring your operations remain secure and compliant.

 

References

Solution Advice
  1. Update to the latest ServiceNow release that addresses this XSS vulnerability.
  2. Employ content security policies (CSP) to mitigate the risk of XSS attacks.
  3. Train users to recognize and avoid malicious links, enhancing overall security awareness.
  4. Implement additional input validation and output encoding measures to prevent similar vulnerabilities.
  5. Regularly conduct security reviews and penetration testing to identify and address potential security issues.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.