continuum-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Olivier Lamy (JIRA)" <j...@codehaus.org>
Subject [jira] Updated: (CONTINUUM-1867) Project group admin should not be able to grant system-wide roles to himself
Date Wed, 17 Sep 2008 22:06:48 GMT

     [ http://jira.codehaus.org/browse/CONTINUUM-1867?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Olivier Lamy updated CONTINUUM-1867:
------------------------------------

    Fix Version/s:     (was: 1.2.1)
                   1.2

> Project group admin should not be able to grant system-wide roles to himself
> ----------------------------------------------------------------------------
>
>                 Key: CONTINUUM-1867
>                 URL: http://jira.codehaus.org/browse/CONTINUUM-1867
>             Project: Continuum
>          Issue Type: Bug
>          Components: Web - Security
>    Affects Versions: 1.2
>            Reporter: Wendy Smoak
>             Fix For: 1.2
>
>         Attachments: continuum-user-edit.pdf
>
>
> As a project group admin for a single group, I am able to edit my user account and grant
any role up to and including system administrator.
> A project group admin should be able to grant the roles for his own project group to
other users.  He should not be able to elevate his own permissions.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Mime
View raw message