SAP Knowledge Base Article - Preview

3448083 - Clickjacking X-Frame-Options header

Symptom

  • The server did not return a X-Frame-Options header with the value DENY or SAMEORIGIN.
  • X-Frame-Options header can be seen in below image:


Read more...

Environment

  • SAP BusinessObjects Business Intelligence Platform 4.3
  • Windows Server

Product

SAP BusinessObjects Business Intelligence platform 4.3

Keywords

X-Frame-Options, header, Clickjacking, CMC, BI Launchpad, XFO, browser, user-agent, response header, SAMEORIGIN, DENY. , KBA , BI-BIP-SEC , Security Vulnerabilities in SAP BusinessObjects , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.