SAP Knowledge Base Article - Preview

2989320 - Missing X-Frame-Options from accounts.ondemand.com HTTP header

Symptom

A vulnerability tool reported that X-Frame-Options HTTP header is missing from the IAS tenant logon page:
  https://<tenantID>.accounts.ondemand.com


Read more...

Environment

SAP Cloud Platform Identity Authentication Service

Product

Identity Authentication 1.0

Keywords

ids, ias, x-frame, http-header , KBA , BC-IAM-IDS , Identity Authentication Service , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.