Uploaded image for project: 'AppFormer'
  1. AppFormer
  2. AF-1037

Business-central maven artifacts available at maven2wb without authorization

    XMLWordPrintable

Details

    • Bug
    • Resolution: Done
    • Major
    • None
    • None
    • General workbench
    • 2018 Week 07-08, 2018 Week 09-10
    • NEW
    • NEW

    Description

      There is a security issue regarding downloading from BRMS Maven repository:

      wget http://localhost:8080/business-central/maven2/org/guvnor/guvnor-asset-mgmt-project/6.5.0.Final-redhat-19/guvnor-asset-mgmt-project-6.5.0.Final-redhat-19.jar
      

      returns 401 response -> ok

      wget http://localhost:8080/business-central/maven2wb/org/guvnor/guvnor-asset-mgmt-project/6.5.0.Final-redhat-19/guvnor-asset-mgmt-project-6.5.0.Final-redhat-19.jar
      

      returns 22 response and the requested file -> not ok

      Attachments

        Issue Links

          Activity

            People

              trikkola Toni Rikkola
              trikkola Toni Rikkola
              Jan Hrcek Jan Hrcek (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: