diff --git a/app/controllers/admin/members_controller.rb b/app/controllers/admin/members_controller.rb index ebf1aa2..48f8293 100644 --- a/app/controllers/admin/members_controller.rb +++ b/app/controllers/admin/members_controller.rb @@ -234,7 +234,7 @@ class Admin::MembersController < OrbitMemberController end def edit_privilege - if has_access? + if current_user.is_admin? @user = @member.user @workgroup = Workgroup.find_by(key: 'admin') else diff --git a/app/views/admin/members/show.html.erb b/app/views/admin/members/show.html.erb index 4b27e3b..91dbb5f 100644 --- a/app/views/admin/members/show.html.erb +++ b/app/views/admin/members/show.html.erb @@ -17,7 +17,7 @@
<%= link_to(" #{t(:edit)}".html_safe,edit_admin_member_path(@member),:class=>"btn btn-mini" ) if has_access? %> <%= link_to(" #{t("users.change_passwd")}".html_safe,admin_member_edit_passwd_path(@member),:class=>"btn btn-mini" ) if has_access? %> - <%= link_to(" #{t("users.setting_privilege")}".html_safe,admin_member_edit_privilege_path(@member),:class=>"btn btn-mini" ) if has_access? %> + <%= link_to(" #{t("users.setting_privilege")}".html_safe,admin_member_edit_privilege_path(@member),:class=>"btn btn-mini" ) if current_user.is_admin? %>