CVE-2025-12420

CRITICAL

ServiceNow AI Platform - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2025-12420. PoCs published by OloladeAbiola03, cyberdudebivash.

AI-analyzed exploit summary This repository provides a technical analysis of CVE-2025-12420, focusing on the ServiceNow Virtual Agent vulnerability, including attack flow, MITRE ATT&CK mapping, detection strategies, and mitigation recommendations. It does not contain exploit code but offers in-depth research on the vulnerability.

Description

A vulnerability has been identified in the ServiceNow AI Platform that could enable an unauthenticated user to impersonate another user and perform the operations that the impersonated user is entitled to perform. ServiceNow has addressed this vulnerability by deploying a relevant security update to  hosted instances in October 2025. Security updates have also been provided to ServiceNow self-hosted customers, partners, and hosted customers with unique configurations. Additionally, the vulnerability is addressed in the listed Store App versions. We recommend that customers promptly apply an appropriate security update or upgrade if they have not already done so.

Exploits (2)

nomisec WRITEUP
by OloladeAbiola03 · poc
https://github.com/OloladeAbiola03/aisecplus-week01-servicenow-ai-security-incident

This repository provides a technical analysis of CVE-2025-12420, focusing on the ServiceNow Virtual Agent vulnerability, including attack flow, MITRE ATT&CK mapping, detection strategies, and mitigation recommendations. It does not contain exploit code but offers in-depth research on the vulnerability.

Classification
Writeup 90%
Attack Type
Other
Complexity
Moderate
Reliability
Theoretical
Target: ServiceNow Virtual Agent
No auth needed
Prerequisites: knowledge of ServiceNow Virtual Agent · understanding of MITRE ATT&CK framework
devstral-2 · analyzed Jun 16, 2026 Full analysis →
nomisec SCANNER
by cyberdudebivash · poc
https://github.com/cyberdudebivash/CYBERDUDEBIVASH-ServiceNow-AI-Agent-Audit-Script

This repository contains a Python-based audit script for ServiceNow AI Agents, specifically checking for vulnerabilities like CVE-2025-12420. It scans for misconfigurations, over-privileged credentials, and governance gaps, generating reports in JSON or HTML format.

Classification
Scanner 90%
Attack Type
Info Leak
Complexity
Moderate
Reliability
Reliable
Target: ServiceNow AI Agents (versions 5.0.24, 5.1.17, 5.2.0, 5.2.18)
Auth required
Prerequisites: Valid ServiceNow credentials · Access to ServiceNow API · Config file with instance details
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v3 9.8
EPSS 0.1737
EPSS Percentile 96.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-250
Status published
Products (2)
servicenow/now_assist_ai_agents < 5.1.18
servicenow/virtual_agent_api < 3.15.2
Published Jan 12, 2026
Tracked Since Feb 18, 2026