Blog
XSS flaw put Salesforce accounts at risk of hijacking
                                                                                                                            
                                      By Graham Cluley on Thu, 08/13/2015
                                                            
                  
                  
                                            
  
  
  
    
                
          
Security researchers have found a cross-site scripting (XSS) vulnerability on the Salesforce website, that could be exploited by malicious hackers to conduct phishing attacks and hijack the accounts of users. The researchers at Elastica report that they uncovered the weakness on one of Salesforce's subdomains, admin.salesforce.com. Specifically, the...                    
        
                                 
 
 
 
 
 
 
 
 
 
 
 
 
 
