by sapiens.bi

Dynamic Reports and Interactive Charts. A powerful tool for SuiteCRM report creation and data analytics. Includes a variety of chart types, detailed, summary and pivot tables. This Reporting Tool is very user-friendly, no need for technical knowledge or SQL. The Sapiens.BI tool comes with over 100 pre-built reports that are ready to be used on day one.

Free 30 day trial
Try it Now

#1705 - Sharing a report overrides suitecrm deny permissions and user can access entire module and reports

Closed Bug? created by OPDS 5 years ago

Hi,

During our testing we found that if a report is shared to a user (as view only) and this user belongs to a Role with no access, create, delete or modify rights to the Analytic Reporting module. They can still get complete access, to create, delete and modify reports via a url: .../index.php?module=AnalyticReporting

Version 7.9.4 Sugar Version 6.5.24 (Build 509)

Is this a know issue or can you reproduce it? Thank you

  1. sapiens-bi member avatar

    sapiens.bi Provider

    5 years ago

    Hello,

    Thank you for contacting us. Actually - we can not reproduce it on our side, permissions to View only give no more than View. Except, if the user is admin user. Maybe your users are also the admins?

    Please let us know!

    Thank you! IT Sapiens Team

  2. OPDSUPPORT member avatar

    OPDS

    5 years ago

    Hi,

    Thank you for your help.

    The users are regular users, but we do use https://store.suitecrm.com/addons/securitysuite. This is the only thing I can think of that changes the how users are managed from a standard Suitecrm install, however all roles and groups permissions are set to deny and these are reflected in the CRM; so know SecuirtySuite does not have an issue. I think we will sign up for another free trial of the reporting tool and test it on another suite instance where we are not running SecuritySuite and see if the issue remains.

    If your able to test with SecuirtySuite in the meantime to see if there might be a compatibility issue, that would be great but dont worry if you cant we will try to test asap.

    Thanks

    • sapiens-bi member avatar

      sapiens.bi Provider

      5 years ago

      Thank you so much for your feedback, you are welcome to apply for another trial.

      We have also contacted you via e-mail ( please check from eva.narunovska@itsapiens.eu ), - for more detailed info and possible support.

      Best Regards, IT Sapiens

This case is public. Please leave out any sensitive information such as URLs, passwords, etc.
Saving Comment Saving Comment...