[Vtigercrm-commits] [vtiger-commits] r5433 - in /vtigercrm/trunk/modules/Accounts: DetailView.php ListView.php

vtigercrm-commits at vtiger.fosslabs.com vtigercrm-commits at vtiger.fosslabs.com
Thu Apr 27 03:02:58 EDT 2006


Author: saraj
Date: Thu Apr 27 01:02:50 2006
New Revision: 5433

Log:
Added the Security Check for Buttons in List/Detail View of Accounts Module - Ahmed

Modified:
    vtigercrm/trunk/modules/Accounts/DetailView.php
    vtigercrm/trunk/modules/Accounts/ListView.php

Modified: vtigercrm/trunk/modules/Accounts/DetailView.php
==============================================================================
--- vtigercrm/trunk/modules/Accounts/DetailView.php (original)
+++ vtigercrm/trunk/modules/Accounts/DetailView.php Thu Apr 27 01:02:50 2006
@@ -71,13 +71,13 @@
 
 
 $permissionData = $_SESSION['action_permission_set'];
-if(isPermitted("Accounts",1,$_REQUEST['record']) == 'yes')
+if(isPermitted("Accounts","EditView",$_REQUEST['record']) == 'yes')
 	$smarty->assign("EDIT_DUPLICATE","permitted");
 
-if(isPermitted("Accounts",2,$_REQUEST['record']) == 'yes')
+if(isPermitted("Accounts","Delete",$_REQUEST['record']) == 'yes')
 	$smarty->assign("DELETE","permitted");
 
-if(isPermitted("Accounts",8,'') == 'yes')
+if(isPermitted("Accounts","Merge",'') == 'yes')
 {
 	$smarty->assign("MERGEBUTTON","permitted");
 	require_once('include/utils/UserInfoUtil.php');

Modified: vtigercrm/trunk/modules/Accounts/ListView.php
==============================================================================
--- vtigercrm/trunk/modules/Accounts/ListView.php (original)
+++ vtigercrm/trunk/modules/Accounts/ListView.php Thu Apr 27 01:02:50 2006
@@ -73,11 +73,14 @@
 {
 	$CActionDtls = $oCustomView->getCustomActionDetails($viewid);
 }
-if(isPermitted('Accounts',2,'') == 'yes')
+if(isPermitted('Accounts','Delete','') == 'yes')
 {
 	$other_text['del'] = $app_strings[LBL_MASS_DELETE];
 }
-		$other_text['s_mail'] = $app_strings[LBL_SEND_MAIL_BUTTON];
+if(isPermitted('Emails','EditView','') == 'yes')
+{
+	$other_text['s_mail'] = $app_strings[LBL_SEND_MAIL_BUTTON];
+}		
 if(isset($CActionDtls))
 {
 	$other_text['s_cmail'] = $app_strings[LBL_SEND_CUSTOM_MAIL_BUTTON];





More information about the vtigercrm-commits mailing list