Siebel System Admin, Install and Upgrade (MOSC)

MOSC Banner

prevention of cross-site scripting attacks (xss) on siebel application

edited Jan 14, 2019 2:04PM in Siebel System Admin, Install and Upgrade (MOSC) 8 commentsAnswered

Hi Techies,

Tried to implement cross-site scripting attacks, followed document Doc ID 2370975.1.

After append : Content-Security-Policy: default-src 'self' at httpd.conf file, OHS server.

Result:

1) Unable to inject to application through web browser from another domain.

2) Now the issue is, Normal, Application itself not able to load because of content-security policy.

How to enforce cross-site scripting prevention in Siebel Application.

Thanks,

Prabhu

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center