Vulnerability Details CVE-2022-38172
ServiceNow through San Diego Patch 3 allows XSS via the name field during creation of a new dashboard for the Performance Analytics dashboard.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.016
EPSS Ranking 80.9%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2022-38172
-
cpe:2.3:a:servicenow:servicenow:san_diego