PacketFence
Bug Tracking System

View Issue Details Jump to Notes ] Issue History ] Print ]
IDProjectCategoryView StatusDate SubmittedLast Update
0001778PacketFencesecuritypublic2014-03-20 12:252014-03-20 21:07
Reporterlpelet 
Assigned Tofrancis 
PriorityhighSeveritymajorReproducibilityalways
StatusresolvedResolutionfixed 
PlatformAllOSAllOS VersionAll
Product Version4.0.0 
Target VersionFixed in Version4.1.1 
Summary0001778: admin user gain role default
DescriptionIn the database schema >= 4.0.0, we define the user admin with the category = 1.
It lets the user admin to gain the role default if authenticated on the captive portal.
Verify that your admin password is strong else users can guess it and register devices with role default.
If you don't use the user admin on the captive portal, remove this capability on the user tab in users properties for admin.
TagsNo tags attached.
fixed in git revision27bd6016b8a13638b2c6c06061f4ad4ecf9588c1
fixed in mtn revision
Attached Files

- Relationships

-  Notes
There are no notes attached to this issue.

- Issue History
Date Modified Username Field Change
2014-03-20 12:25 lpelet New Issue
2014-03-20 21:07 francis fixed in git revision => 27bd6016b8a13638b2c6c06061f4ad4ecf9588c1
2014-03-20 21:07 francis Status new => resolved
2014-03-20 21:07 francis Fixed in Version => 4.1.1
2014-03-20 21:07 francis Resolution open => fixed
2014-03-20 21:07 francis Assigned To => francis


Copyright © 2000 - 2012 MantisBT Group
Powered by Mantis Bugtracker