Hi,
I want to prevent Cross-Frame scripting attack. Note that I am not asking about Cross-site Scripting attack, but Cross-Frame.
Security scan flags my website with Cross-Frame vulnerability. However I don't see IFRAME anywhere in the rendered markup. But I am positive this is related to Telerik controls. How do you prevent cross-frame attack, which I believe allows attacker to inject alternate content into an IFRAME on the page.
I have the following Telerik controls/Assemblies on page:
1) Telerik.Web.UI
2) RadScriptManager
3) RadAjaxManager
4) RadStyleSheetManager
5) RadMenu
6) RadComboBox
7) RadPanelBar
8) RadGrid
9) RadAjaxManagerProxy