SAP Knowledge Base Article - Public

2981515 - Security: Content Security Policy missing - Recruiting Marketing

Symptom

Content Security Policy is missing on RMK career site

Environment

SAP SuccessFactors Recruiting Marketiing (RMK)

Reproducing the Issue

When running a tool to find security vulnerabilities, confirmed that Security Policy is missing.

Resolution

According to Security team this is not being considered as a security vulnerabity as it will not influence the CIA directly.

However, they are already working on this as an enhancement for an upcoming release.

Keywords

security, content policy missing, rmk, external career site , KBA , LOD-SF-RMK-SEC , Security & Vulnerabilities , Problem

Product

SAP SuccessFactors Recruiting all versions