SAP Knowledge Base Article - Preview

1599882 - Mitigation of XSRF (Cross-Site Request Forgery) in UWL

Symptom

  • Authorization is required when launching a Business Workflow task from the UWL through a WebFlowConnector when XSRF is enabled in backend transaction SICF.


Read more...

Environment

  • SAP Release Independent
  • Universal Worklist and Workflow

Product

SAP NetWeaver Application Server for Java all versions ; SAP NetWeaver all versions

Keywords

Security, violation, UID/PWD displayed , KBA , sicf , EP-BC-UWL , Universal Worklist , BC-JAS-SEC , Security, User Management , EP-PIN-AI , Application Integration , EP-PIN-PSL , Portal System Landscape , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.