Project:
View Issue Details[ Jump to Notes ] | [ Issue History ] [ Print ] | |||||||||||
ID | ||||||||||||
0025063 | ||||||||||||
Type | Category | Severity | Reproducibility | Date Submitted | Last Update | |||||||
design defect | [Openbravo ERP] C. Security | major | always | 2013-10-31 17:24 | 2013-10-31 17:24 | |||||||
Reporter | caristu | View Status | public | |||||||||
Assigned To | AugustoMauch | |||||||||||
Priority | urgent | Resolution | open | Fixed in Version | ||||||||
Status | new | Fix in branch | Fixed in SCM revision | |||||||||
Projection | none | ETA | none | Target Version | ||||||||
OS | Any | Database | Any | Java version | ||||||||
OS Version | Database version | Ant version | ||||||||||
Product Version | SCM revision | |||||||||||
Review Assigned To | ||||||||||||
Web browser | ||||||||||||
Modules | Core | |||||||||||
Regression level | ||||||||||||
Regression date | ||||||||||||
Regression introduced in release | ||||||||||||
Regression introduced by commit | ||||||||||||
Triggers an Emergency Pack | No | |||||||||||
Summary | 0025063: Filters of the definition of the window are displayed in the request | |||||||||||
Description | When serving a window, the window definition is requested by the browser. The filters (where clauses) for the window are defined inside. It is possible to delete this filters and perform the same requests without them, which could show records to the user that is not allowed to see. | |||||||||||
Steps To Reproduce | In Description. | |||||||||||
Tags | No tags attached. | |||||||||||
Attached Files | ||||||||||||
Relationships [ Relation Graph ] [ Dependency Graph ] | |
Issue History | |||
Date Modified | Username | Field | Change |
2013-10-31 17:24 | caristu | New Issue | |
2013-10-31 17:24 | caristu | Assigned To | => AugustoMauch |
2013-10-31 17:24 | caristu | Modules | => Core |
2013-10-31 17:24 | caristu | Triggers an Emergency Pack | => No |
2013-10-31 17:24 | caristu | Issue Monitored: networkb |
Copyright © 2000 - 2009 MantisBT Group |