Description
The ServiceNow is vulnerable to the XSS (cross-site scripting). The logout endpoint interacts with its DOM in an insecure way.
Remediation
Upgrade to the latest version of ServiceNow
References
Related Vulnerabilities
WordPress Plugin Lightbox Plus Colorbox Cross-Site Scripting (2.7.2)
WordPress 2.6.3 Cross-Site Scripting Vulnerability (0.6.2 - 2.6.3)
Drupal Core 4.6.x Cross-Site Scripting (4.6.0 - 4.6.8)
WordPress Plugin Securimage-WP Cross-Site Scripting (3.2.4)
WordPress Plugin WP Statistics Cross-Site Scripting (12.6.3)