Connect. Communicate. Collaborate. Securely.

Home » Kerio User Forums » Kerio Connect » WebAdmin bug in 6.1.0 to 6.1.2
  •  
Kerio_jthomas

Messages: 511
Karma: 1
Send a private message to this user
Hello all,

There is a rare bug in 6.1.0 through 6.1.2 which we have decided to describe so that you will not encounter it. It is hard to reproduce, but if you do the consequences are bad. We were not able to fix this for 6.1.2, but it will definately be fixed for 6.1.3 or a patch to 6.1.2.

This bug is described in our KB: http://support.kerio.com/index.php?_a=knowledgebase&_j=q uestiondetails&_i=344

Here is the full text:

--
Although fairly rare, it is possible that when using the WebAdmin interface in KMS 6.1.0 through 6.1.2, domain admins could potentially modify users in another domain. The issue only pertaints to domain admins using Internet Explorer. This can occur if several instances of the WebAdmin interface are running in independent IE browser windows on the same machine. Even though each of the domain admins are logged into their own (seperate) domains with seperate usernames, it is possible that one domain admin could inadvertenly modify a user in another domain.

Note: The following is for informational purposes only so that this issue can be prevented. Please do not attempt to follow these steps as this could result in accidental deletion of user accounts.

Steps to reproduce:

* Start Internet Explorer three times and go to WebAdmin login page
* Let's name the windows as IE1, IE2, IE3 in order, in which they were open (i.e. IE1 was open as first).
* Log as user1<_at_>domain1, user2<_at_>domain2 and user3<_at_>domain3 in each browser respectively.
* In IE3 create user A, press 'Add user' button and the user A is added to the list of users in IE1. Similarly for editing and deleting. When user A doesn't exist in IE1, then warning "user doesn't exist" appears in IE1.
* Close window IE1, then all operations from IE3 will be performed within IE2.

This particular issue has been addressed by our development team and will be resolved in the next release of the Kerio MailServer. Until then please avoid opening multiple browser windows to the WebAdmin interface. A couple of workarounds have also been found:

1. Use Firefox which is not affected.
2. If using IE, perform actions for 1 domain, log out, log in another domain and perform actions.

--

[Updated on: Thu, 02 March 2006 18:58]


Joshua Thomas
Technical Support Manager
2350 Mission College Blvd, Suite 400
Santa Clara, CA 95054
Phone: (408) 496-4500
Fax: (408) 496-6902
http://www.kerio.com/support.html

  •  
Kerio_jthomas

Messages: 511
Karma: 1
Send a private message to this user
This bug is fixed in KMS 6.1.3.

Joshua Thomas
Technical Support Manager
2350 Mission College Blvd, Suite 400
Santa Clara, CA 95054
Phone: (408) 496-4500
Fax: (408) 496-6902
http://www.kerio.com/support.html

Previous Topic: Kerio 6.1.2 & Avg 7.1 do not get along well !
Next Topic: WebMail Calendar bug, 6.1.2
Goto Forum:
  


Disclaimer:
Kerio discussion forums are intended for open communication between forum members and may contain information and material posted by members which may be useful in learning about Kerio products. The discussion forums are not intended to provide technical support for any specific product. Any information implied or expressed in the discussion forums is that of the posting member. Kerio is in no way responsible for the information posted in the forums, or its accuracy. Kerio employees may participate in the discussions, but their postings do not represent an offical position of the company on any issues raised or discussed. Kerio reserves the right to monitor and maintain the forums to promote free and accurate exchange of information.

Current Time: Wed Nov 22 12:18:05 CET 2017

Total time taken to generate the page: 0.00338 seconds
.:: Contact :: Home ::.
Powered by: FUDforum 3.0.4.