Armitage Archive

ServiceNow Quietly Addresses Unauthenticated Data Exposure Flaw From 2015

by Connor Jones

Original article

This page contains highlights I saved while reading ServiceNow Quietly Addresses Unauthenticated Data Exposure Flaw From 2015 by Connor Jones. These quotes were collected using Readwise.

Highlights

ServiceNow is issuing a fix for a flaw that exposes data after a researcher published a method for unauthenticated attackers to steal an organization's sensitive files.

Permalink to this highlight


After the research started attracting attention last week, ServiceNow quietly released a second fix for the issue that set all blank ACLs to disallow public access by default.

Permalink to this highlight


Want more like this? See all articles or get a random quote.