.:: Jasa Membuat Aplikasi Website,Desktop,Android Order Now..!! | | Order Now..!! Jasa Membuat Project Arduino,Robotic,Print 3D ::.

OpenERP v7 menu security issue

0 komentar


بِسْــــــــــــــــمِ اﷲِالرَّحْمَنِ اارَّحِيم
bismillaahirrahmaanirrahiim

السَّلاَمُ عَلَيْكُمْ وَرَحْمَةُ اللهِ وَبَرَكَاتُهُ
Assalamu'alaikum warahmatullahi wabarakatuh

Hello fellow Malaysia OpenERP communities , Do you know , if you login as ADMIN , and  copy a URL in this session for a particular menu which is not authorized to access the menu, and login as another user,  the restricted user will be able access that pages . This is an OpenERP issues, where the menus are only �hidden� BUT not actually �restricted� . This can be a serious security flaw if the pages are registered in search engines or If someone who is expert in OpenERP access the data.

I have found another useful module for you to tighten up your security of OE , it DID  not made by me , so i claim NO credit , but it can be found here , which i have uploaded in to E-global managed REPO... 

http://sourceforge.net/p/openerp-asia/code/HEAD/tree/trunk/V7.0/

you can click on the Download Snapshot , to download all the code .

the module is called  "web_menu_security" V7 module , which after installed it will restricts all the menus from user who have no permission to access that. The attempt will redirect the user to home page. You can use this module, without any configuration in the database. 

Hope you find more and more useful way for your local Malaysia business to grow through OpenERP , which we as SME has used it ourselves too !

Bravo , OpenERP ! Create History , Impact SME !


Update Contact :
No Wa/Telepon (puat) : 085267792168
No Wa/Telepon (fajar) : 085369237896
Email : Fajarudinsidik@gmail.com
NB :: Bila Sobat tertarik Ingin membuat software, membeli software, membeli source code, membeli hardware elektronika untuk kepentingan Perusahaan maupun Tugas Akhir (TA/SKRIPSI), Insyaallah Saya siap membantu, untuk Respon Cepat dapat menghubungi kami, melalui :

No Wa/Telepon (puat) : 085267792168
No Wa/Telepon (fajar) : 085369237896
Email: Fajarudinsidik@gmail.com


atau Kirimkan Private messanger melalui email dengan klik tombol order dibawah ini :

ٱلْحَمْدُ لِلَّهِ رَبِّ ٱلْعَٰلَمِين
Alhamdulilah hirobil alamin

وَ السَّلاَمُ عَلَيْكُمْ وَرَحْمَةُ اللهِ وَبَرَكَاتُهُ
wassalamualaikum warahmatullahi wabarakatuh


Artikel OpenERP v7 menu security issue, Diterbitkan oleh scodeaplikasi pada Senin, 09 Desember 2013. Semoga artikel ini dapat menambah wawasan Anda. Website ini dipost dari beberapa sumber, bisa cek disini sumber, Sobat diperbolehkan mengcopy paste / menyebar luaskan artikel ini, karena segala yang dipost di public adalah milik public. Bila Sobat tertarik Ingin membuat software, membeli software, membeli source code ,Dengan Cara menghubungi saya Ke Email: Fajarudinsidik@gmail.com, atau No Hp/WA : (fajar) : 085369237896, (puat) : 085267792168.

Tawk.to