Continuum

Identification page lock

Details

  • Type: Bug Bug
  • Status: Closed Closed
  • Priority: Minor Minor
  • Resolution: Fixed
  • Affects Version/s: 1.1-alpha-1
  • Fix Version/s: 1.1-alpha-2
  • Component/s: Web - Security, Web - UI
  • Labels:
    None
  • Environment:
    Web interface on Firefox or Mozilla
    (can't test on IE)
  • Complexity:
    Intermediate
  • Number of attachments :
    0

Description

1 - The root user create a new user (projectleader) with a password ans sets privileges.
2 - The root user logs out.
3 - The projectleader logs in, AND checks the "remember me" checkbox.
4 - Continuum asks to change the projectleader password

Here if you don't delete the cookie, you can't exit the security/password.action page.

  • Logout doesn't work
  • Restart Continuum doesn't work
  • Click menu item doesn't work

It seems, the 'remember me' checkbox set the login valid.
But, we can't avoid, override or bypass the security check afterward.

Activity

Hide
Emmanuel Venisse added a comment -

Fixed in plexus-redback

Show
Emmanuel Venisse added a comment - Fixed in plexus-redback

People

Vote (0)
Watch (0)

Dates

  • Created:
    Updated:
    Resolved: