Details
-
Bug
-
Status: Closed
-
Resolution: Fixed
-
6.1.X EE, 6.2.X EE, 7.0.0 M4
-
6.2.x
-
Committed
-
1
-
2
Description
Steps
1. Log in as admin
2. Add a Regular Role -> "Role Manager"
3. Define Permissions on Role Manager
4. Control Panel -> Users -> Roles check Access in Control Panel and save
5. Organization Owner > Permissions > Check view for Role Manager
6. Add another Regular Role -> "Secret Role"
7. Click Permissions on the Secret Role
8. Verify that the Role Manager does not have View permission on the role
9. Add a new User with the Role Manager Role
10. Log in as the new user
11. Go to Control Panel -> Users -> Roles
Expected
Secret role should not be displayed.
Actual
Secret role is displayed.
Attachments
Issue Links
- causes
-
LPS-71095 User with Site Administrator role is unable to manage site membership roles
- Closed
-
LPS-71321 Site Administrators are unable to view site roles
- Closed
- is duplicated by
-
LPS-53132 Invalid SQL is generated at InlineSQLHelperImpl with some non-admin users
- Closed
- relates
-
LPS-54144 InlineSQLHelperImpl.replacePermissionCheckJoin() creates wrong SQL
- Closed
-
LPS-71321 Site Administrators are unable to view site roles
- Closed
-
LPE-13465 Roles admin shows Roles to users without view permission
-
- Closed
-
- Testing discovered
-
LPS-53667 Unnecessarily complex query for groupIds when using InlineSQLHelper
- Closed