[opencms-dev] OpenCms 7.0.3: role "Account Manager" can change Admin password

Fabian Huschka fabian.huschka at componio.net
Mon Jan 21 17:35:55 CET 2008


Hello Kai,

I also stumbled upon this behaviour. From my point of view this is a bug 
as I do not believe a user with the role "Account Manager" of any OU 
other than "/" shall be able to edit the administratorĀ“s or any other 
foreign OU memberĀ“s personal data.


\Fabian


Schliemann, Kai schrieb:
> Hi list,
> is it an intended behaviour, that a user with the assigned role 
> "Account Manager" can change the passwords of users with the 
> "Administrator" role? Shouldn't he only have the right to change 
> Account data of users which have the same or a lower level role?
>  
> Regards
> Kai
> ------------------------------------------------------------------------
>
>
> _______________________________________________
> This mail is sent to you from the opencms-dev mailing list
> To change your list options, or to unsubscribe from the list, please visit
> http://lists.opencms.org/mailman/listinfo/opencms-dev




More information about the opencms-dev mailing list