id: servicenow-title-injection info: name: Service Now - Title Injection author: DhiyaneshDk severity: high reference: - https://www.assetnote.io/resources/research/chaining-three-bugs-to-access-all-your-servicenow-data classification: cpe: cpe:2.3:a:servicenow:servicenow:*:*:*:*:*:*:*:* metadata: verified: true max-request: 1 vendor: servicenow product: servicenow shodan-query: - http.favicon.hash:1701804003 - http.title:"servicenow" fofa-query: - icon_hash=1701804003 - title="servicenow" google-query: intitle:"servicenow" tags: cve,cve2024,servicenow,injection http: - method: GET path: - "{{BaseURL}}/login.do?jvar_page_title=" matchers-condition: and matchers: - type: word part: body words: - '