Uwe Steinmann
51fa5d18e6
enhance AccessOperation by check_view_access()
...
all methods in SeedDMS_AccessOperation take the object to be checked
as the first parameter. Add new method check_view_access() which
checks if a view may be accessed based on the tables tblAros, tblAcos,
tblArosAcos
2016-03-03 07:39:04 +01:00
Uwe Steinmann
482143c04f
pass $dms to contructor of SeedDMS_AccessOperation
2015-08-07 13:11:50 +02:00
Uwe Steinmann
d33b17f64c
include inc/inc.Init.php, fix order of include files
2014-12-08 14:48:23 +01:00
Uwe Steinmann
627c6f8248
use ClassAccessOperation
2014-10-22 14:00:50 +02:00
steinm
2f8aef9165
use new views
2012-12-14 08:34:56 +00:00
steinm
5e11a14c42
- fixed possible xss security holes
2012-09-05 21:00:14 +00:00
steinm
452221fe2b
- lots of fixes to prevent CSRF attacks
2012-08-29 20:37:22 +00:00
steinm
75c2adcfc6
- prevent XSS attacs
2012-08-28 07:18:00 +00:00
steinm
73f4c8d90d
- use htmlspecialchars() whenever data from the database is output
...
(this does currently break the output, because data was already
encoded when saved)
2011-12-02 16:23:36 +00:00
steinm
3e1d956fba
- do not include LetoDMS_Core.php anymore it is now include bei inc.DBInit.php
2011-01-20 12:39:25 +00:00
steinm
8a84bc3b51
- rename all classes belonging to the core of LetoDMS into LetoDMS_Core_xxx
...
- move them all into LetoDMS_Core
2011-01-20 08:18:37 +00:00
steinm
5e70f949f7
- do not include inc.DBAccess.php, because it is included by inc.ClassDMS.php
2011-01-14 19:45:29 +00:00
steinm
955be450f3
- getFolderPathHTML() is now a function in inc/inc.Utils.php because
...
it uses links only known by the calling application
2010-12-22 08:50:57 +00:00
steinm
72defaaacf
- no need to include inc.FileUtils.php anymore. It is included
...
by LetoDMS_DMS
2010-11-25 21:28:59 +00:00
steinm
35b663eb74
- inc.ClassAccess is now included by inc.ClassDMS.php
2010-11-23 08:13:17 +00:00
steinm
a029cd22c2
- filterAccess() and filterUsersByAccess() are now static functions in
...
LetoDMS_DMS and inc.AccessUtils.php is included in inc.ClassDMS.php
2010-11-22 20:42:19 +00:00
steinm
4678218f1a
- moved function to admin users and groups in LetoDMS_DMS
2010-11-15 12:01:21 +00:00
steinm
cfd3eaae06
- first step to get rid of global variables from all files in inc/
...
- added new Class LetoDMS_DMS which represents the DMS, contains
all settings for the DMS and the database connection. A document
and a folder have a reference to the DMS
2010-11-12 22:47:41 +00:00
steinm
b5bc621318
- move all sources into trunk
2010-10-29 13:19:51 +00:00