Bug Tracker Incident #15936

 


Summary
Project
INCDT - xTuple ERP
Incident Category
Bugs
Incident Number
15936
Visibility
public


Product Version
3.8.0Beta
Fixed In Version
None


Summary
*It is possible to edit CRM accounts even after revoking 'MaintainAllCRMAccounts' and 'MaintainPersonalCRMAccounts' privileges


Description

CRM accounts can be edited even after revoking the 'MaintainAllCRMAccounts' and 'MaintainPersonalCRMAccounts'

Steps to Reproduce:
1. System-Maintain Users
2. Select to open the user in edit mode
3. Revoke 'MaintainAllCRMAccounts' and 'MaintainPersonalCRMAccounts' privileges of CRM module
4. CRM-Accounts-List
5. Observe that it is possible to create/edit an address


Details
Reporter
nagesh
CRM Account
ZenQ
Status
Closed
Assigned
None


Priority
Normal
Severity
Minor
Updated
10-17-11 08:10
Resolution
No Change Required



Comments

DateUsernameComment
10/17/11 08:10jrogelstad

Technically editing the contact related to an account or adding a contact relationship to an account is not editing the account. It is editing the contact, if the user has privileges to edit a contact then they should be able to do this.

10/14/11 09:47ptyler

Confirmed in 3.8 beta demo db. It's possible to add new contacts to a CRM account and also edit existing contacts even though the user should not be able to maintain CRM accounts.

10/13/11 08:14nagesh

CRM accounts can be edited even after revoking the 'MaintainAllCRMAccounts' and 'MaintainPersonalCRMAccounts'

Steps to Reproduce:
1. System-Maintain Users
2. Select to open the user in edit mode
3. Revoke 'MaintainAllCRMAccounts' and 'MaintainPersonalCRMAccounts' privileges of CRM module
4. CRM-Accounts-List
5. Observe that it is possible to create/edit an address



Characteristics

Backport
No
CodeReview
None
Operating System
all
Doc Flag
False
Copyright Assigned
Yes
HaxTuple
No
Points
None

Files

No Files

Related Documents

TypeNumberDescriptionRelationshipRemove
ProjectXTUPLEAPPSPorted From Mantisx


Subscribers

You do not have permission to view subscribers.


Incident History

DateUsernameFieldChange
10/13/11 08:14nageshNewIncident Added
10/13/11 08:14nageshCharacteristic Backport Added: "No"
10/13/11 08:14nageshCharacteristic CodeReview Added: ""
10/13/11 08:14nageshCharacteristic Operating System Added: "all"
10/13/11 08:14nageshCharacteristic haxTuple Added: "No"
10/13/11 08:14nageshCharacteristic Estimated Hours Added: ""
10/13/11 08:14nageshCharacteristic Doc Flag Added: "False"
10/13/11 08:14nageshCharacteristic Copyright Assigned Added: "Yes"
10/13/11 08:14acdrupalFound In: -> 3.8.0Beta
10/14/11 09:47ptylerDescription Updated: "CRM accounts can be ..." -> "CRM accounts can be ..."
10/14/11 09:47ptylerStatusStatus Changed: New -> Confirmed
10/17/11 08:10jrogelstadStatusStatus Changed: Confirmed -> Closed
10/17/11 08:10jrogelstadResolutionResolution Changed: -> No Change Required

 

mead