5.2.3

Security

  • Fixed possible XSS on login page -SW
  • Fixed user edit when selecting preferences would remove all checked security setting boxes [TPS#7113] -JO

Fixed

  • Fixed error being displayed when upgrading components/wizards from the UI when they were actually installed correctly -SW
  • Fixed Perfdata not maintaining time period selection when filtering hosts [TPS#6970][OTRS#11217] -SW
  • Fixed translation errors on a few pages (recurring downtime, recent alerts, metrics) [TPS#6991] -JO
  • Fixed missing icons on recurring downtime page [TPS#6992] -JO
  • Fixed showing scheduled downtime buttons on scheduled downtime page to read-only users [TPS#6974] -JO
  • Fixed scheduled downtime not adding trigger id when set [TPS#6977] -JO
  • Fixed scheduled downtime not adding flexible when selected [TPS#6972] -JO
  • Fixed send_nrdp.sh handling of XML special chars. [TPS#6846] -SW
  • Fixed bulk modifications when changing templates on hosts/services with no templates [TPS#7016] -JO
  • Fixed minemap dashlet not keeping size on home dashboard [TPS#7024] -JO
  • Fixed permissions on autodiscovery jobs directory to run on new installs [TPS#7038] -JO
  • Fixed reset password to give an error if trying to set an AD/LDAP user password unless they have ‘allow local auth’ checked [TPS#7022] -JO
  • Fixed issue where API would say it removed a host or service with dependencies when it really couldn’t and would leave the host/service in the CCM -JO
  • Fixed possible clickjacking by forcing login page to be the top frame element -SW
  • Fixed scheduled downtime problems with certain types of date format selected -JO
  • Fixed garbled Japanese characters in home page title [TPS#7100] -JO
  • Fixed box sizing cutting off some text in manage dashlets pages [TPS#7071] -JO
  • Fixed capacity planning when disabled auto-running reports select boxes for time periods and extrapolation methods [TPS#7076] -JO
  • Fixed capacity planning when disabled auto-running reports is from blanking out during page changes -JO
  • Fixed autodiscovery wizard, rss dashlet, and escalation wizard from not being available on certain systems [TPS#7096] -JO
  • Fixed Event Log report not showing up in reports list for users with ‘can see/control monitoring engine’ [TPS#7110] -JO
  • Fixed issue with graph.php no allowing you to pass in view and start timestamps -SW
  • Fixed BPI hostgroup/servicegroup names not showing proper Japanese characters [TPS#7116][M#11] -SS

Component Updates

Core Config Manager (CCM) 2.5.2

  • Fixed return URL (cancel button) links for host/services edited from clicking through the splash page [TPS#7095] -JO