Security Advisory
CVE-2018-8720
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
ServiceNow ITSM 2016-06-02 has XSS via the First Name or Last Name field of My Profile (aka navpage.do), or the Search bar of My Portal (aka search_results.do).